[jboss-user] [JBoss Seam] - Re: Is it safe to have simple integer conversation IDs?

jazir1979 do-not-reply at jboss.com
Thu Aug 30 23:13:18 EDT 2007


You can only access conversations that were initiated from your session.  

If you are worried about session hijacking then fine, but it has nothing to do with integer conversation IDs.

"dhinojosa" wrote : Just the standard hijacking, knowing that there is a possibility of say <1000 conversationIds for a standard run of the mill shopping cart site.   
  | 

View the original post : http://www.jboss.com/index.html?module=bb&op=viewtopic&p=4079822#4079822

Reply to the post : http://www.jboss.com/index.html?module=bb&op=posting&mode=reply&p=4079822



More information about the jboss-user mailing list