Beefy Boxes and Bandwidth Generously Provided by pair Networks
Clear questions and runnable code
get the best and fastest answer
 
PerlMonks  

Answer: Cookie based authentication: Is it secure?

( #30267=categorized answer: print w/ replies, xml ) Need Help??

Q&A > CGI programming > Cookie based authentication: Is it secure? contributed by sinan

There is something you can do to insure security. Everytime a user logs on, generate a random number, put it on the user's machine as a cookie.
print "Set-Cookie: temp-id=$random_no; domain=yourdomain.com; expires= +".($now+3600);
At the same time, write the same $random_no to a DB on your server, as well as the user's username. So, you can now identify the user using a temporary id.

Hope this helps,

Sinan

Comment on Answer: Cookie based authentication: Is it secure?
Select or Download Code
Log In?
Username:
Password:

What's my password?
Create A New User
Chatterbox?
and the web crawler heard nothing...

How do I use this? | Other CB clients
Other Users?
Others scrutinizing the Monastery: (15)
As of 2015-07-28 14:29 GMT
Sections?
Information?
Find Nodes?
Leftovers?
    Voting Booth?

    The top three priorities of my open tasks are (in descending order of likelihood to be worked on) ...









    Results (256 votes), past polls