jmcastagnetto           Fri Mar 16 22:35:51 2001 EDT

  Modified files:              
    /phpdoc/en/functions        session.xml 
  Log:
  Added note on adding SID to relative URLs only
  
  
Index: phpdoc/en/functions/session.xml
diff -u phpdoc/en/functions/session.xml:1.33 phpdoc/en/functions/session.xml:1.34
--- phpdoc/en/functions/session.xml:1.33        Tue Jan 23 21:53:47 2001
+++ phpdoc/en/functions/session.xml     Fri Mar 16 22:35:51 2001
@@ -160,6 +160,13 @@
     <literal>--enable-trans-sid</literal> was used to compile PHP.
    </para>
    <para>
+    <note>
+     Non-relative URLs are assummed to point to external sites and
+     hence don't append the SID, as it would be a security risk to
+     leak the SID to an different server.
+    </note>
+   </para>
+   <para>
     To implement database storage, or any other storage method, you
     will need to use <function>session_set_save_handler</function> to
     create a set of user-level storage functions.


Reply via email to