Postby PHP man. » Fri Dec 10, 2004 2:57 am

I'm thinking of getting mod_rewrite. I'm a php designer and was wondering if it could help the age old "passing session id through the url problem". With a network listener one can pick up the session id in the url and just put it in the browser then it will go through directly to that person's sesion on that page. It sucks cause my hosting has set session to url and not cookies so I'm quite worried about my secure info on my pages and pesky script kiddies. Can anyone shed some light if mod rewrite might be the awnser I'm looking for in this situation?


Postby seomike » Sat Dec 11, 2004 10:41 pm

Not that I know of. Best bet would be like you said via cookies but you'd have to dump your host. I'd recommend :biggrin: jk

I'll look around though.
