public function logout() {
-------------------------
 $this->Session->renew();
----------------------------

 }

See Above code at AuthComponent::logout, my question is why it renews the 
session on logout.

Problem Case:
When user open a page with Auth login/logout in incognito browser window. 
Then *upon logout there will always be a orphan session* entry in 
cake_sessions table or an unused file in /tmp/sessions/.

Is this OK ?

-- 
Like Us on FaceBook https://www.facebook.com/CakePHP
Find us on Twitter http://twitter.com/CakePHP

--- 
You received this message because you are subscribed to the Google Groups 
"CakePHP" group.
To unsubscribe from this group and stop receiving emails from it, send an email 
to cake-php+unsubscr...@googlegroups.com.
To post to this group, send email to cake-php@googlegroups.com.
Visit this group at http://groups.google.com/group/cake-php.
For more options, visit https://groups.google.com/d/optout.

Reply via email to