Re: [PHP] HTTPS spoofing and $_SERVER

2002-05-15 Thread George Whiffen
"1LT John W. Holmes" wrote: > Well, if you fix #1, that will fix #2 because you can use $_SERVER["HTTPS"], > which can't be spoofed by the user. What versions of PHP and Apache are you > using, on what OS? > > ---John Holmes... > Oops, Just run up phpinfo and this appears to be php 4.0.1pl2, St

Re: [PHP] HTTPS spoofing and $_SERVER

2002-05-15 Thread 1LT John W. Holmes
Well, if you fix #1, that will fix #2 because you can use $_SERVER["HTTPS"], which can't be spoofed by the user. What versions of PHP and Apache are you using, on what OS? ---John Holmes... - Original Message - From: "George Whiffen" <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Wedn