[Webware-devel] Re: [Webware-discuss] Session Riding

2004-12-23 Thread Mark Phillips
On Dec 23, 2004, at 8:10 AM, Geoffrey Talvola wrote: Frank Barknecht wrote: Geoffrey Talvola hat gesagt: // Geoffrey Talvola wrote: So the most secure solution is indeed to use URL secrets, like the incrementing id already proposed (which must not be guessable) or random secrets (like in

Re: [Webware-devel] Re: [Webware-discuss] Session Riding

2004-12-23 Thread Mark Phillips
oops. sent this to the wrong list... Sorry about that. - Mark --- SF email is sponsored by - The IT Product Guide Read honest candid reviews on hundreds of IT Products from real users. Discover which products truly live up to the hype. Start