I agree.. if you compare the cookie against the ip address in the database you can prevent session hijacking
- [TurboGears] Re: ip address in visit? rick
- [TurboGears] Re: ip address in visit? Patrick Lewis
- [TurboGears] Re: ip address in visit? rick
- [TurboGears] Re: ip address in visit? Jeff Watkins
- [TurboGears] Re: ip address in visit? Patrick Lewis
- [TurboGears] Re: ip address in visi... Jeff Watkins
- [TurboGears] Re: ip address in ... Patrick Lewis
- [TurboGears] Re: ip address in visit? Jeff Watkins
- [TurboGears] Re: ip address in visit? Alberto Valverde
- [TurboGears] Re: ip address in visit? Jeff Grimmett
- [TurboGears] Re: ip address in visit? Jeff Watkins

