Re: Passing the same cookie and headers to a new site

2003-06-21 Thread John J Lee
On Sat, 21 Jun 2003, Matthew Darwin wrote: > The LWP behaviour looks like a security problem to me. > > For example, davin.ottawa.on.ca is not related to flora.ottawa.on.ca > So if one sets a cookie the other site can get it? > Very bad. > > Canadian domains are in the form ...ca > or ..ca or .ca

Re: Passing the same cookie and headers to a new site

2003-06-21 Thread Matthew Darwin
The LWP behaviour looks like a security problem to me. For example, davin.ottawa.on.ca is not related to flora.ottawa.on.ca So if one sets a cookie the other site can get it? Very bad. Canadian domains are in the form ...ca or ..ca or .ca John J Lee wrote: On Fri, 20 Jun 2003, Alan Olegario wrote:

RE: Passing the same cookie and headers to a new site

2003-06-21 Thread John J Lee
On Fri, 20 Jun 2003, Alan Olegario wrote: [...] > HTTP::Cookies::extract_cookies: Set cookie SMSESSION => [cookie info] > HTTP::Cookies::extract_cookies: Set cookie FORMCRED => > HTTP::Cookies::extract_cookies: Set cookie EntFXSessionR => [cookie info] > HTTP::Cookies::extract_cookies: Set cookie L