Re: httpGate for non-picolisp apps

2020-08-29 Thread andreas
Benefit with session-id in URL/page vs. session cookies: zero cross-site request forgery risk. On 29.08.20 08:53, Tomas Hlavaty wrote: > Hi Grant, > > On Sat 29 Aug 2020 at 01:04, Grant Shangreaux > wrote: >>> I suspect other apps cannot

Re: httpGate for non-picolisp apps

2020-08-29 Thread Alexander Burger
Hi Tomas, Grant, > unfortunately, httpGate has a fatal flaw: when a session ends, users end > up with a dead url. You have to train your users to know what to do in > such situation. This is actually not a flaw of httpGate, but results from the fact that when a session expires, it is gone. No wa

Re: httpGate for non-picolisp apps

2020-08-29 Thread Tomas Hlavaty
Hi Grant, On Sat 29 Aug 2020 at 01:04, Grant Shangreaux wrote: >> I suspect other apps cannot handle this. > > i thought this was probably the case. just wondered if someone out > there may have tried and come up with a solution already :) unfortunately, httpGate has a fatal flaw: when a session