Session in SSL

Discussion in 'ASP General' started by Adil Akram, Sep 13, 2004.

  1. Adil Akram

    Adil Akram Guest

    I've developed a shopping cart application in ASP. To maintain the shopping
    cart session, I've used the session ID, but while it shifts to SSL pages,
    the session ID changed which is its default behaviour to maintain security
    and prevent session stealing.

    I've no idea to maintain session in shopping cart with SSL in check out form
    because if I do it with cookies the same security problem exist there,
    anyone can steal cookie in non SSL pages and can use it at any time in
    user's session.

    Expert advices are really appreciated.

    I'm thankful in advance.

    regards,
    Adil
     
    Adil Akram, Sep 13, 2004
    #1
    1. Advertising

  2. See here, http://www.aspfaq.com/show.asp?id=2157, and note the link to the
    cookieless shopping cart that uses a DB to maintain session data.

    Ray at home

    "Adil Akram" <> wrote in message
    news:...
    > I've developed a shopping cart application in ASP. To maintain the

    shopping
    > cart session, I've used the session ID, but while it shifts to SSL pages,
    > the session ID changed which is its default behaviour to maintain security
    > and prevent session stealing.
    >
    > I've no idea to maintain session in shopping cart with SSL in check out

    form
    > because if I do it with cookies the same security problem exist there,
    > anyone can steal cookie in non SSL pages and can use it at any time in
    > user's session.
    >
    > Expert advices are really appreciated.
    >
    > I'm thankful in advance.
    >
    > regards,
    > Adil
    >
    >
    >
    >
     
    Ray Costanzo [MVP], Sep 13, 2004
    #2
    1. Advertising

Want to reply to this thread or ask your own question?

It takes just 2 minutes to sign up (and it's free!). Just click the sign up button to choose a username and then you can ask your own questions on the forum.
Similar Threads
  1. 620
    Replies:
    2
    Views:
    1,061
    Murat Tunaboylu
    Jan 6, 2004
  2. CW
    Replies:
    2
    Views:
    561
  3. Sean Wolfe
    Replies:
    1
    Views:
    2,315
    Joerg Jooss
    Apr 28, 2005
  4. emukang
    Replies:
    0
    Views:
    2,957
    emukang
    Dec 20, 2005
  5. John Smith
    Replies:
    0
    Views:
    408
    John Smith
    Oct 5, 2006
Loading...

Share This Page