Re: [Phplib-users] Multi-domain sessions?
Brought to you by:
nhruby,
richardarcher
|
From: Richard A. <rh...@ju...> - 2002-05-13 00:12:31
|
At 10:05 AM -0500 12/5/02, Walters Justin Peter wrote: >so can you simply pass it in the URL? That's the way I'd do it too. >will want to verify the HTTP_REFERER so that sessions can only be >"hi-jacked" by your sites. HTTP_REFERER is supplied by the user and cannot be trusted. ...R. |