While the token is ALSO used for double submit protection, it also validates that the user got to your form the right way.

i.e., if they don't go to page A and submit, their token won't be valid.

w

On Wed, 26 Jan 2005 10:28:49 -0500
 "ckl" <[EMAIL PROTECTED]> wrote:

I have read two books (Struts in Action and Pro Jakarta Struts), read the
users guide, developed a pilot-app and searched google. The only real
resource I found on the matter was
http://www.javaworld.com/javatips/jw-javatip136_p.html. Which despite the
promising title is really only about double submit protection.


-Kam


--------------------------------------------------------------------- To unsubscribe, e-mail: [EMAIL PROTECTED] For additional commands, e-mail: [EMAIL PROTECTED]



Reply via email to