But why is the filter storing the IP if it is not using it to
authenticate the user?


On 11 oct, 11:06, Alexandru-Emil Lupu <[email protected]> wrote:
> use just the cookie ... not the ip itsself ...
>
> On Fri, Oct 9, 2009 at 5:46 PM, Charles Bernard 
> <[email protected]>wrote:
>
>
>
> > Hi there,
>
> > I’m concerned about this IP checking thing (ip_address field in
> > sf_guard_remember_key table).
>
> > It seems like my website remenbers me for a day only since most ISPs
> > renew their IPs each day.
> > When I get back to my site the day after the cookie value no longer
> > matches my IP which has probably changed over night.
>
> > Shouldn't be relying on users' ips, should it ?
>
> --
> As programmers create bigger & better idiot proof programs, so the universe
> creates bigger & better idiots!
> I am on web:  http://www.alecslupu.ro/
> I am on twitter:http://twitter.com/alecslupu
> I am on linkedIn:http://www.linkedin.com/in/alecslupu
> Tel: (+4)0748.543.798

--~--~---------~--~----~------------~-------~--~----~
You received this message because you are subscribed to the Google Groups 
"symfony users" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to 
[email protected]
For more options, visit this group at 
http://groups.google.com/group/symfony-users?hl=en
-~----------~----~----~----~------~----~------~--~---

Reply via email to