Re: [MRBS-general] delete problem
Brought to you by:
jberanek
From: John B. <jo...@re...> - 2005-03-22 17:40:45
|
Jim Knuth wrote: > Hallo und guten Tag John, >=20 > danke f=FCr die Email vom 17.03.2005 um 11:17 > John Beranek schrieb - wrote: >=20 >>Your English is fine, but you've not given enough information. If the >>MRBS authentication/session management is configured correctly a user >>should be able to delete their own bookings. >=20 >=20 > What is session management called? Here a part of the configuration: [snip] > The sessions are, that are laid down in /tmp, important? What is if > they are deleted? I have an Cronjob, this delete the Temp Folder in > distances. (because of possible web attacks) It's possible that the session code (in session_php.inc) may get confused if the session files are deleted while the user's web browser is still running. This conceivably could cause authentication errors, including the users not being able to delete their own entries. However, a user should certainly be able to create an entry and then immediately delete it without any problems. Can they do this? John. --=20 John Beranek To generalise is to be an idiot. http://redux.org.uk/ -- William Blake |