Considering "Session cookies" is safer and easier to use than improving on UserReferenceArgument (URA),
can one of the following suggestions, or both, make using URA safe enough?
 
1-  pass URA as a hidden field (rather then part of URL) back to the server;
2-  use URA + IP + portNo to identify the user (portNo not provided by Witango at this time).
 
 
- Mihai
 
________________________________________________________________________
TO UNSUBSCRIBE: Go to http://www.witango.com/developer/maillist.taf

Reply via email to