This is what I decided to do. So the pages that need to be secured, I send the the SID as a GET QUERY variable.
I don't like it, but it's the only thing I seems right.


Joel Rees wrote:

if you do sniff the hash, the key, and the session. You will have to
get your request in before the key becomes stale,



race, race!




In most cases the authentication is the
first thing done so we're dealing with micro seconds.



Most cases?


Why re-invent the wheel?






-- PHP General Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php



Reply via email to