DO NOT REPLY TO THIS EMAIL, BUT PLEASE POST YOUR BUGĀ·
RELATED COMMENTS THROUGH THE WEB INTERFACE AVAILABLE AT
<http://issues.apache.org/bugzilla/show_bug.cgi?id=43477>.
ANY REPLY MADE TO THIS MESSAGE WILL NOT BE COLLECTED ANDĀ·
INSERTED IN THE BUG DATABASE.

http://issues.apache.org/bugzilla/show_bug.cgi?id=43477





------- Additional Comments From [EMAIL PROTECTED]  2007-09-26 09:52 -------
Reply to [EMAIL PROTECTED]
funkman said: "The cookie needs to be secure - otherwise session hijacking via 
sniffing would be able to be done. (And it would not be secure)"


So in this case do you mean that I have to keep all my applications under SSL 
even if I dont need that. The login page must be under ssl but the others 
application not automatically.

Mustapha.


-- 
Configure bugmail: http://issues.apache.org/bugzilla/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug, or are watching the assignee.

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to