Author Topic: Security of Session  (Read 2102 times)

Steve

  • This 49%er supports Romney
  • Just a Jackass
  • *
  • Posts: 16120
  • Karma: +31/-410
  • Mr. Mom
Security of Session
« on: July 27, 2008, 05:33:48 PM »
For handling access restriction to the members only pages, my basic idea is to assign a session id when the user logs in, and then simply add a check to each members-only page to ensure the session id has been set. If not redirect them, otherwise allow them access.

I am just wondering if this is too simple? How hard is it to exploit the session assignment?
hey ethic if you and i were both courting lily allen..... oh wait, which one of us has a relationship that lasted more than the bus ride home?

Steve

  • This 49%er supports Romney
  • Just a Jackass
  • *
  • Posts: 16120
  • Karma: +31/-410
  • Mr. Mom
Re: Security of Session
« Reply #1 on: July 27, 2008, 10:13:56 PM »
i already wrote the code, im just asking lol
hey ethic if you and i were both courting lily allen..... oh wait, which one of us has a relationship that lasted more than the bus ride home?