Loading...

使用.htaccess中更改session.name

Temperature: 0 °C

Mark ChangMark Chang
author_tools

session固定攻擊
session的默認名稱是PHPSESSID,此變量會保存在cookie中。
為了資訊安全,在.htaccess中以下行指令做更名的動作:

php_value session.name "SEESESSID"

以上紀錄~
 

More chapters / Next article: 直接在PHP重新命名帶有前綴的session.name

#故事  #PHPSESSID  #htaccess  #session固定攻擊  
https://innstory.com/story-使用htaccess中更改sessionname-2716

Prev
 htaccess_使用gzip壓縮網站加快加載速度並節省頻寬

Next
使用_htaccess_關閉緩存 

About the Author

Mark Chang

離不開電腦的宅男

Visitor message

Leave some footprints to prove that you visited me

Recommended reading

Author's other related stories

預料中的事?

預料中的事?

如果說是預料中的事 不是更應該未雨綢繆? 而不是放著爛然後說預料中的事吧 果然我低智商搞不懂高智商的...

synology nas 上如何解決Fatal error: Call to undefined function exif_read_data()

synology nas 上...

在synology nas執行PHP時發生以下錯誤 PHP 致命錯誤:調用未定義函數 exifrea...

青少年

青少年

CDC剛才說下波可讓5~5歲青壯年打疫苗 所以就說了我是屬於青少年

Please select an option

error

Hi, thank you for your participation, but you cannot vote repeatedly~

Join innstory now and start recording your story.

"Innstory" is a place to store stories. We are committed to becoming a warm platform. Deepening the bonds between people is our direction.
We are convinced that the blockchain between people is not just a cold calculation. Join us now.

Wrong format