From c0736d6096428069e710c5c7c1b6e7161ef2f464 Mon Sep 17 00:00:00 2001 From: Markus Fischer Date: Sun, 16 Jun 2002 06:05:23 +0000 Subject: [PATCH] - List new session.use_only_cookies option. --- php.ini-dist | 3 +++ php.ini-recommended | 3 +++ 2 files changed, 6 insertions(+) diff --git a/php.ini-dist b/php.ini-dist index 7c0a433731..9727b84d99 100644 --- a/php.ini-dist +++ b/php.ini-dist @@ -725,6 +725,9 @@ session.save_path = /tmp ; Whether to use cookies. session.use_cookies = 1 +; This option enables administrators to make their users invulnerable to +; attacks which involve passing session ids in URLs; defaults to 0. +; session.use_only_cookies = 1 ; Name of the session (used as cookie name). session.name = PHPSESSID diff --git a/php.ini-recommended b/php.ini-recommended index 13fdd46c65..b4fd4befb5 100644 --- a/php.ini-recommended +++ b/php.ini-recommended @@ -732,6 +732,9 @@ session.save_path = /tmp ; Whether to use cookies. session.use_cookies = 1 +; This option enables administrators to make their users invulnerable to +; attacks which involve passing session ids in URLs; defaults to 0. +; session.use_only_cookies = 1 ; Name of the session (used as cookie name). session.name = PHPSESSID -- 2.40.0