For Programmers: Free Programming Magazines  


Home > Archive > PERL CGI Beginners > December 2004 > Session security









You are viewing an archived Text-only version of the thread. To view this thread in it's original format and/or if you want to reply to this thread please [click here]

 

Author Session security
Jonathan Mangin

2004-12-27, 3:55 pm

Hi all,

I need to implement group memberships for a series of related
CGI modules, with approx. 10 groups and 6 auth. levels within
each group.

I'm now using CGI::Session with a single param of auth_level as
a session-expiration flag. I'd like to expand this to a groups
mechanism, but I gather there are security issues with this
method.

Can someone tell me what these are, or point me to explanations
of the problems?

Thanks a bunch,
-J

Sponsored Links







Also available: Server administration forum archive | Web Design forum archive | Software forum archive | Hardware reviews archive

Copyright 2008 codecomments.com