Re: [PHP] RE: Protecting from session hijacking

2001-07-04 Thread Christopher Ostmo
Ian Bagley pressed the little lettered thingies in this order... One thing which would prevent hijacks from simply guessing SIDS would be to add an md5 hash to the end of a url e.g. If a page was:- doit.php?item=4SID=237478 then append the url with the md5 of the url PLUS a

RE: [PHP] RE: Protecting from session hijacking

2001-07-04 Thread Ian Bagley
-Original Message- From: Christopher Ostmo [mailto:[EMAIL PROTECTED]] Ian Bagley pressed the little lettered thingies in this order... One thing which would prevent hijacks from simply guessing SIDS would be to add an md5 hash to the end of a url [snip]