On Aug 18, 2004, at 1:09 PM, Chris Davies wrote:


It seems that a HEAD request is still processed by OpenACS, and even though it is a HEAD request, it does set up a session and set a cookie.


As an FYI, the HTTP RFC basically states that servers should do all the processing on a HEAD request that would happen for a GET request; this ensures that the returned headers are accurate. See RFC 2616, Section 9.4 (although there's not much more there than what I just mentioned).

Noah Robin
System Administrator, America Online
703.265.2925
#include <remarks/witty.h>


-- AOLserver - http://www.aolserver.com/

To Remove yourself from this list, simply send an email to <[EMAIL PROTECTED]> with the
body of "SIGNOFF AOLSERVER" in the email message. You can leave the Subject: field of 
your email blank.

Reply via email to