This is more a matter of configuring your Web Server and/or Application Server.  By doing this, you still maintain the same session within your application (cocoon.)
-----Original Message-----
From: jcplerm [mailto:[EMAIL PROTECTED]
Sent: Wednesday, October 15, 2003 3:38 PM
To: [EMAIL PROTECTED]
Subject: Mixed HTTP/HTTPS requests in Cocoon sessions

I would like to know how can I go about implementing a website in which users have access to all site pages via HTTP, with the exception of login and credit card information updates, while keeping the same session while transitioning from non-secure to secure HTTP and vice-versa.
 
Has anyone experience using Cocoon and HTTPS?
 
Like I said, in my application it does not make sense to use HTTPS for all pages, just whenever sensitive login and credit card information is transmitted.
 
Thanks,
 
jlerm

Reply via email to