Courtenay wrote: > On 3/22/07, S. Robert James <[EMAIL PROTECTED]> wrote: > >> On Mar 22, 10:44 am, Brad Ediger <[EMAIL PROTECTED]> wrote: >> Now, I click "Log Out", and get up from the library's computer, only >> to let the person waiting after me to retrieve the old cookie.... That >> innocuous user id just became both sensitive and transient. >> > > You click 'log out' and it deletes the cookie. > This is no different to a normal server-based session. > Actually, if you have the cookie set to expire at the end of the session, simply closing your web browser should delete the cookie.
Cheers! Patrick --~--~---------~--~----~------------~-------~--~----~ You received this message because you are subscribed to the Google Groups "Ruby on Rails: Core" group. To post to this group, send email to [email protected] To unsubscribe from this group, send email to [EMAIL PROTECTED] For more options, visit this group at http://groups.google.com/group/rubyonrails-core?hl=en -~----------~----~----~----~------~----~------~--~---
