Welcome Guest, Not a member yet? Register   Sign In
[Solved]Where to store user info after logging in
#10

[eluser]arcreative[/eluser]
Not to spoof an authenticated session--as an attacker isn't going to get the reply packets...

But while I'm here, it should probably be mentioned that IP matching is finicky in situations (especially mobile browsing) where the IP can change on a per-request basis. CI will drop the session every time the IP changes, so this should be considered when building your application!


Messages In This Thread
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 08:36 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 09:37 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 09:46 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 09:59 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 10:02 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 10:13 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 10:27 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 11:10 PM
[Solved]Where to store user info after logging in - by El Forum - 07-17-2011, 11:33 PM
[Solved]Where to store user info after logging in - by El Forum - 07-18-2011, 12:00 PM



Theme © iAndrew 2016 - Forum software by © MyBB