Encrypting the strings yields long URLs or large cookie data. I usually use a one way hash algorithm such as MD5 on the ID (of course that's getting somewhat dangerous now due to the apparent hackability of MD5, SHA-256 might be a better choice) and store that in the cookie, or the URL. I store a copy of that in the database with the row of information I need for the user.

For extra security you can change the session string each time they hit the site. I would do this especially if you're using URLs since that way the session string is likely to have changed if your user shares the URL with someone and you can generate a new session or ask the new connecting user to login or whatever.

I can't say I've used the session modules that people so often talk about. I really don't like extra temp files that many of them create. I know some of them have options for using the database, but I typically have to make a call to the database anyway, why make a separate one?

I'm not going to say my method is better/worse than anyone else's. It works for me!


In reply to Re: How do you do sessions in Web Sites by cfreak
in thread How do you do sessions in Web Sites by digiryde

Title:
Use:  <p> text here (a paragraph) </p>
and:  <code> code here </code>
to format your post, it's "PerlMonks-approved HTML":



  • Posts are HTML formatted. Put <p> </p> tags around your paragraphs. Put <code> </code> tags around your code and data!
  • Titles consisting of a single word are discouraged, and in most cases are disallowed outright.
  • Read Where should I post X? if you're not absolutely sure you're posting in the right place.
  • Please read these before you post! —
  • Posts may use any of the Perl Monks Approved HTML tags:
    a, abbr, b, big, blockquote, br, caption, center, col, colgroup, dd, del, details, div, dl, dt, em, font, h1, h2, h3, h4, h5, h6, hr, i, ins, li, ol, p, pre, readmore, small, span, spoiler, strike, strong, sub, summary, sup, table, tbody, td, tfoot, th, thead, tr, tt, u, ul, wbr
  • You may need to use entities for some characters, as follows. (Exception: Within code tags, you can put the characters literally.)
            For:     Use:
    & &amp;
    < &lt;
    > &gt;
    [ &#91;
    ] &#93;
  • Link using PerlMonks shortcuts! What shortcuts can I use for linking?
  • See Writeup Formatting Tips and other pages linked from there for more info.