[ php-blog-Bugs-1547073 ] When using https for admin, cookies not always sent securely

"SourceForge.net" <[email protected]>
Newsgroups gmane.comp.serendipity.trackers
Message-ID <[email protected]>
Bugs item #1547073, was opened at 2006-08-26 12:19
Message generated for change (Tracker Item Submitted) made by Item Submitter
You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=542822&aid=1547073&group_id=75065

Please note that this message will contain a full copy of the comment thread,
including the initial issue submission, for this request,
not just the latest update.
Category: Administrative functions
Group: None
Status: Open
Resolution: None
Priority: 5
Submitted By: Lynoure Braakman (lynoure)
Assigned to: Nobody/Anonymous (nobody)
Summary: When using https for admin, cookies not always sent securely

Initial Comment:
When the admin has been set to use https, the request
for serendipity_admin.css is still sent over plain http
and the cookies get sent along. This leaks the
authentication data which is stored in a cookie.

----------------------------------------------------------------------

You can respond by visiting: 
https://sourceforge.net/tracker/?func=detail&atid=542822&aid=1547073&group_id=75065

-------------------------------------------------------------------------
Using Tomcat but need to do more? Need to support web services, security?
Get stuff done quickly with pre-integrated technology to make your job easier
Download IBM WebSphere Application Server v.1.0.1 based on Apache Geronimo
http://sel.as-us.falkag.net/sel?cmd=lnk&kid=120709&bid=263057&dat=121642
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.