WebApp Sec mailing list archives

Re: Control of cookies???


From: Christian Schneemann <mailinglist () christianschneemann de>
Date: Wed, 28 Jan 2004 15:17:49 +0100

On Wednesday 28 January 2004 14:03, Marcelo Caffaro wrote:
Hello Guys, anyone can help-me to send ideas, solutions or samples to
manage the session of one website.

For Sample, i have one site (IIS) and below this structure of site i have
the folder named docs, but if i put the complete url of the website
document, everyone can see my document. I need create one method to
authenticate my user, i dont know if cookie control is a best solution but
i need to arrest the user, ip and cookie to control the user access, if the
user is not authenticated the user cannot see the documents.

Anyone can help-me?

Sorry my english
I've understand you, that not everybody should have acces to your document 
folder, is that right? why don't you use htaccess ??



Current thread: