Hello.
The method described here is not the same as regular session management. In the regular session management, the session id stays still during the session. Here, it is supposed to change on every page load.
Update: It seems I'm the one who misunderstood the method. However, I think my method (creating a new ID on every page load) would be a bit more secure.
--
Alper Ersoy
In reply to Re: Re: Re: Is this a secure way to handle login?
by aersoy
in thread Is this a secure way to handle login?
by tipthepizzaguy
| For: | Use: | ||
| & | & | ||
| < | < | ||
| > | > | ||
| [ | [ | ||
| ] | ] |