Posted by Matt M. on 02/18/05 21:23
> I am developing an application. When the user signs in a Session ID is
> created (for argument sake: 123). I have a sign out page that has the script
> session_destroy() on it. This page directs me to the sign in page. When I
> sign the same or any other user in again I get the same session id (123).
>
> However, when I close the browser window and sign in again as any member,
> the session id changes.
>
> How does this work and how can I ensure that a unique session id is
> allocated to every new user that signs in?
some good reading
http://us2.php.net/session
you could use http://us2.php.net/session_regenerate_id to create new ids
[Back to original message]
|