[web2py] Re: Security question: cookie manipulation stealing cookies

2011-02-18 Thread devGS
With some delay, I've just opened an issue. Please see: http://code.google.com/p/web2py/issues/detail?id=198 On Feb 7, 6:31 pm, Massimo Di Pierro massimo.dipie...@gmail.com wrote: We do not have a simple mechanism yet to do it. I can add it, please open an issue on google code. On Feb 7, 9:28 

[web2py] Re: Security question: cookie manipulation stealing cookies

2011-02-07 Thread devGS
And one more question, how to change session ID after user login? On Feb 7, 5:13 pm, devGS vitali@geniestills.com wrote: I saw many explanations about web2py's built-in security, but does it have some implemented security against cookie manipulation and stealing cookies attacks? -For cases

[web2py] Re: Security question: cookie manipulation stealing cookies

2011-02-07 Thread Massimo Di Pierro
We do not have a simple mechanism yet to do it. I can add it, please open an issue on google code. On Feb 7, 9:28 am, devGS vitali@geniestills.com wrote: And one more question, how to change session ID after user login? On Feb 7, 5:13 pm, devGS vitali@geniestills.com wrote: I

[web2py] Re: Security question: cookie manipulation stealing cookies

2011-02-07 Thread devGS
Thanks for your reply, I will do so. On Feb 7, 6:31 pm, Massimo Di Pierro massimo.dipie...@gmail.com wrote: We do not have a simple mechanism yet to do it. I can add it, please open an issue on google code. On Feb 7, 9:28 am, devGS vitali@geniestills.com wrote: And one more