[Seaside] seaside sessions and http(s) - security

Liliana liliana at finworks.biz
Mon Sep 10 15:38:03 UTC 2007

> Is there some way of protecting against such a url copy and paste?

>>If the browsers are on different machines and not NATed then you can use WASessionProtector (add it as a decoration to your root component). You can also store the session key in a cookie instead of the url.


Thank you Philippe. This works in squeak. I took the discussion on the beta at seaside.gemstone.com list

