Ignore:
Timestamp:
Jan 15, 2006, 1:52:55 PM (18 years ago)
Author:
nikrou
Message:

Improve security of sessions:

  • use only cookies to store session id on client side
  • use default php session system with database handler to store sessions on server side
File:
1 edited

Legend:

Unmodified
Added
Removed
  • branches/branch-1_5/admin/intro.php

    r991 r1003  
    178178    'DB_GROUPS' => sprintf(l10n('%d groups'), $nb_groups),
    179179    'DB_COMMENTS' => sprintf(l10n('%d comments'), $nb_comments),
    180     'U_CHECK_UPGRADE' =>
    181       add_session_id(PHPWG_ROOT_PATH.'admin.php?action=check_upgrade'),
    182     'U_PHPINFO' =>
    183       add_session_id(PHPWG_ROOT_PATH.'admin.php?action=phpinfo')
     180    'U_CHECK_UPGRADE' => PHPWG_ROOT_PATH.'admin.php?action=check_upgrade',
     181    'U_PHPINFO' => PHPWG_ROOT_PATH.'admin.php?action=phpinfo'
    184182    )
    185183  );
     
    218216    'waiting',
    219217    array(
    220       'URL' => add_session_id(PHPWG_ROOT_PATH.'admin.php?page=waiting'),
     218      'URL' => PHPWG_ROOT_PATH.'admin.php?page=waiting',
    221219      'INFO' => sprintf(l10n('%d waiting for validation'), $nb_waiting)
    222220      )
     
    237235    'unvalidated',
    238236    array(
    239       'URL' => add_session_id(PHPWG_ROOT_PATH.'admin.php?page=comments'),
     237      'URL' => PHPWG_ROOT_PATH.'admin.php?page=comments',
    240238      'INFO' => sprintf(l10n('%d waiting for validation'), $nb_comments)
    241239      )
Note: See TracChangeset for help on using the changeset viewer.