[Seaside] seaside sessions and http(s) - security

Liliana liliana at finworks.biz
Mon Sep 10 15:38:03 UTC 2007


> Is there some way of protecting against such a url copy and paste?

>>If the browsers are on different machines and not NATed then you can use WASessionProtector (add it as a decoration to your root component). You can also store the session key in a cookie instead of the url.

Cheers
Philippe


Thank you Philippe. This works in squeak. I took the discussion on the beta at seaside.gemstone.com list
Liliana



More information about the seaside mailing list