|
Posted by Richard Davey on 10/10/05 21:38
Hi Dan,
Monday, October 10, 2005, 7:43:31 PM, you wrote:
> How secure is it to save a password in $_SESSION.
> i.e. $_SESSION['password']
> is it safe and is it practical?
No, and no (well, not if you want to be safe)
More to the point - why would you ever want to? If you've found
yourself in a situation where the only option open to you is this, you
need to hit the drawing board again and re-design your application.
Big time.
Cheers,
Rich
--
Zend Certified Engineer
http://www.launchcode.co.uk
[Back to original message]
|