[tbnl-devel] Session cookie should be set for path=/

Stefan Scholl stesch at no-spoon.de
Thu Mar 17 21:50:43 UTC 2005


On 2005-03-17 22:31:59, Edi Weitz wrote:
> On Thu, 17 Mar 2005 19:46:22 +0100, Stefan Scholl <stesch at no-spoon.de> wrote:
> > So that's the correct behavior of my browser. For sessions the path
> > should be set to "/" by the server.
> 
> I've added that to 0.5.1 although I'm not fully convinced that that's
> the right way.  It should probably be customizable.  Maybe you don't
> /want/ the session to be valid for the whole site...

Depending on the following click path there could be a session
without a session cookie. The URL rewriting cares for that.

Only the people who are paranoid enough to forbid cookies should
be punished by strang URLs. :-)


Regards,
Stefan





More information about the Tbnl-devel mailing list