iEntry 10th Anniversary Forum Rules Search
WebProWorld
Register FAQ Calendar Mark Forums Read
Web Programming Discussion Forum Working with an API? Developing a plugin? Writing a Mod or script for your favorite blog, Web 2.0 site or Forum? Welcome.

Share Thread: & Tags

Share Thread:

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 05-13-2005, 12:38 PM
WebProWorld New Member
 
Join Date: Nov 2004
Posts: 7
dm2000t RepRank 0
Default ColdFusion....anyone?

In Application.cfm I have (this is ony securing on folder, not the main root directory)

and some "isDefined(session.auth.isloggedin)" security steups (based on Ben Forta's Book).
<cfapplication name="XYZOFFICE" sessionmanagement="yes">

This works great, but I want to add a logout page that would clear the session variables....

in the book it says to add a logout page with:
<CFAPPLICATION name="XYZFFICE" sessionmanagement="yes" sessiontimeout="#createtimespan(0,0,0,0)#">
<cflocation url="../XYZOFFICETEST.cfm"> <---take out of secured section--->

After I log out...and go back into secured section...it bypasses and pulls up the session variables, meaning it didn't clear them. Anythoughts?

Thanks in advance.
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > Web Programming Discussion Forum

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On



All times are GMT -4. The time now is 09:39 PM.



Search Engine Optimization by vBSEO 3.3.0