How to change session id after login asp
Risk of not changing session id after login asp
on accessing the application the users receive a session id which remains constant until the browser instance is used closed. An adversary can hijack session and gain unauthorized access to sensitive information
Step to change session id after login in asp
<% dim ckie1,ckie2,findcolonpos, finalckie
ckie = Request.ServerVariables("HTTP_ COOKIE")
findcolonpos=InStr(1,ckie,";")
if findcolonpos>0 then
ckie1=split(ckie,";")
ckie2=split(ckie1(1),"=")
finalckie=ckie2(0)
else
ckiename = Mid(ckie,1,(Instr(ckie,"=")-1) )
finalckie=ckiename
end if
%>
<META HTTP-EQUIV="Set-Cookie" Content="<%=finalckie%>=NULL; path=/">
ckie = Request.ServerVariables("HTTP_
findcolonpos=InStr(1,ckie,";")
if findcolonpos>0 then
ckie1=split(ckie,";")
ckie2=split(ckie1(1),"=")
finalckie=ckie2(0)
else
ckiename = Mid(ckie,1,(Instr(ckie,"=")-1)
finalckie=ckiename
end if
%>
<META HTTP-EQUIV="Set-Cookie" Content="<%=finalckie%>=NULL; path=/">
just put the above code on top of page after the user gets login to application (eg :- Welcome page)
mmorpg oyunlar
ReplyDeleteInstagram takipçi satin al
Tiktok jeton hilesi
tiktok jeton hilesi
antalya saç ekimi
instagram takipçi satın al
Instagram takipci satin al
metin2 pvp serverlar
İnstagram Takipçi Satın Al
Yeni perde modelleri
ReplyDeletesms onay
mobil ödeme bozdurma
nft nasıl alınır
Ankara Evden Eve Nakliyat
trafik sigortası
dedektör
Web Site Kurma
Aşk kitapları
smm panel
ReplyDeletesmm panel
İş İlanları Blog
instagram takipçi satın al
hirdavatciburada.com
beyazesyateknikservisi.com.tr
Servis
JETON HİLE İNDİR
kadıköy alarko carrier klima servisi
ReplyDeleteümraniye beko klima servisi
üsküdar alarko carrier klima servisi
beykoz daikin klima servisi
üsküdar daikin klima servisi
pendik toshiba klima servisi
tuzla alarko carrier klima servisi
maltepe arçelik klima servisi
kadıköy arçelik klima servisi