| 
| Subject: | Great script. | 
|---|
 | Summary: | Package rating comment | 
|---|
 | Messages: | 5 | 
|---|
 | Author: | Dennis Granger | 
|---|
 | Date: | 2008-04-13 12:00:31 | 
|---|
 | Update: | 2008-04-15 04:03:45 | 
|---|
 |  |  |  | 
Dennis Granger rated this package as follows:
| Utility: | Good | 
|---|
| Consistency: | Good | 
|---|
| Examples: | Good | 
|---|
|  | 
  Dennis Granger - 2008-04-13 12:00:32Great script. I do notice one potential vulnerability - session_regenerate_id() should be replaced with session_regenerate_id(true). See notes by 'Different Dennis' at http://shiflett.org/articles/session-fixation
  Dennis Granger - 2008-04-13 12:09:05 - In reply to message 1 from Dennis Granger
  Dennis Granger - 2008-04-13 12:24:54 - In reply to message 2 from Dennis GrangerSorry, I just noticed earlier post relating to the same matter - see posting "session_regenerate_id does not solve our problem".
  Vagharshak Tozalakyan - 2008-04-13 13:01:09 - In reply to message 3 from Dennis GrangerHello Dennis,
 Thank you for your comment. I've just slightly modified the source code in order to support session_regenerate_id() parameter for PHP version 5.1.0 or higher.
  Dennis Granger - 2008-04-15 04:03:45 - In reply to message 4 from Vagharshak TozalakyanTerrific. That was a very quick response! Thanks Vagharshak.
 Dennis
 |