On Wed, 2005-10-26 at 14:16 -0500, Jonathan Angliss wrote:
[........]
> 
> Would it be possible to perform a few tests?  Open a browser on user A, go
> to the login page, login, see what cookies you have been assigned and find
> out the session id... make a note... restart the browser... rinse, repeat.
> 


Hello Jonathan

I really think this has something to do with a problem we had in our
system some months ago. More information here:
http://sourceforge.net/mailarchive/message.php?msg_id=12715881

We patched our code so it does not use a SID with a value like 'deleted'
or not a 32 long char string and the problem is gone.


-- 
Rafael Martinez, <[EMAIL PROTECTED]> 
Center for Information Technology Services 
University of Oslo, Norway                   

PGP Public Key: http://folk.uio.no/rafael/

Attachment: signature.asc
Description: This is a digitally signed message part

Reply via email to