in reply to Is this a secure way to prevent cookie tampering
1. Encrypt it.
2. bin2hex/urlencode/uuencode it.
3. take the md5 and append it.
If the md5 of the encrypted info doesn't match the md5 of the encrypted/md5 part, you know someone was tampering with it.
Yes, you can do a lot of caching tricks server side, but sometimes, you don't have a choice. -s
Bart: God, Schmod. I want my monkey-man.
|
|---|
| Replies are listed 'Best First'. | |
|---|---|
|
Re^2: Is this a secure way to prevent cookie tampering
by Anonymous Monk on Jun 30, 2004 at 16:46 UTC | |
by exussum0 (Vicar) on Jun 30, 2004 at 16:48 UTC | |
by Anonymous Monk on Jun 30, 2004 at 18:35 UTC | |
by exussum0 (Vicar) on Jun 30, 2004 at 19:00 UTC | |
by iburrell (Chaplain) on Jun 30, 2004 at 19:16 UTC | |
|