No such thing as a small change | |
PerlMonks |
Re: how do I force a specific session, not my own, to end? (delete)by Anonymous Monk |
on Mar 08, 2013 at 20:27 UTC ( [id://1022485]=note: print w/replies, xml ) | Need Help?? |
delete the session The real problem here, is you're confusing a session with authorization autentication -- user proves he is a user -- could be he's got a valid session authorization -- permissions -- if account is disabled, doesn't matter if user has a valid session (authenticated, logged it), he can no longer change password, make posts ... If your code base doesn't distinguish from authentication and authorization, you've got a problem
In Section
Seekers of Perl Wisdom
|
|