Pat Farrell <[EMAIL PROTECTED]> writes:

> The solution is not very hard, set a cookie with a strongly created
> nonce, use that to index into the table of valid sessions. At least
> it is easy until you want to scale it to many servers.

This is what a backend database is for. ;)

> Pat

-derek, who just implemented something like this for one of his clients

-- 
       Derek Atkins                 617-623-3745
       [EMAIL PROTECTED]             www.ihtfp.com
       Computer and Internet Security Consultant

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to [EMAIL PROTECTED]

Reply via email to