How does the session know which user is accessing it? Does it resolves the
user identity by IP address or cookie or IP address plus port number ...
etc?
The problem is in mobile phones in Japan, cookie is not allowed. Also, there
is usually a gateway hiding the server, so all user will have same IP
address ( but they will have different port number) and if session resolve
by IP address only, then users will have access to other users session
object.
Anthony Mak
___________________________________________________________________________
To unsubscribe, send email to [EMAIL PROTECTED] and include in the body
of the message "signoff SERVLET-INTEREST".
Archives: http://archives.java.sun.com/archives/servlet-interest.html
Resources: http://java.sun.com/products/servlet/external-resources.html
LISTSERV Help: http://www.lsoft.com/manuals/user/user.html
- Re: How does Session object resolve user identity? Anthony Mak
- Re: How does Session object resolve user identity? Gokul Singh
- Re: How does Session object resolve user identity? Gokul Singh
