[thelist] Java Servlet Session Management

Dominik C.K. Wee dckw2 at cam.ac.uk
Wed Jan 23 14:30:51 CST 2002


Hi guys,

Can somebody give me advice on how secure the built-in Java Servlet
Session Management is, e.g. how easily session Ids can be forged,
assuming that SSL is used.

Cheers,

Dominik





More information about the thelist mailing list