tomcat-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From Maninder S Batth <>
Subject Re: problem with session tracking and redirection http<---> https
Date Sun, 20 Oct 2002 02:32:38 GMT
my 2 cents:

encrypting session information such as encrypted urls or  cookies dont 
buy anything. they can be sniffed , and sent back. or worse things can 
happen.  Security is not "cheap" so forget finding an inexpensive way. 
 thats one big problem with open protocols, you know exactly where to 
get the information and the stucture of information. SSL seems to be the 
"cheapest" way of doing business online as of now.

  • Unnamed multipart/alternative (inline, None, 0 bytes)
View raw message