Thanks Mads, that has saved me some time.
> > I'm considering mapping SSL_SESSION_IDs to sessions on my
> > webserver. Are there any obvious gotchas that I should be
> > aware of before I start going down this route?
> >
> Don't use SSL_SESSION_ID - most MSIE browser versions will
> expire the session after 1 or 2 minutes.
--
Paul McGarry mailto:[EMAIL PROTECTED]
Systems Integrator http://www.opentec.com.au
Opentec Pty Ltd http://www.iebusiness.com.au
6 Lyon Park Road Phone: (02) 9878 1744
North Ryde NSW 2113 Fax: (02) 9878 1755
______________________________________________________________________
Apache Interface to OpenSSL (mod_ssl) www.modssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]