| Anonymous | Login | Signup for a new account | 2013-05-24 22:07 MDT |
| Main | My View | View Issues | Change Log | Roadmap | Docs |
| Viewing Issue Simple Details [ Jump to Notes ] | [ View Advanced ] [ Issue History ] [ Print ] | ||||||
| ID | Category | Severity | Reproducibility | Date Submitted | Last Update | ||
| 0001120 | [v3.0 Release (Under Development)] Core Infrastructure | minor | always | 2012-04-06 11:28 | 2012-09-16 23:22 | ||
| Reporter | opto | View Status | public | ||||
| Assigned To | trevormorse | ||||||
| Priority | normal | Resolution | fixed | ||||
| Status | resolved | Product Version | |||||
| Summary | 0001120: wrong warning on session use trans sid | ||||||
| Description |
installer gives warning although setting seems to be ok, green mark expected: Session Use Trans Sid = OFF? There are security risks with this turned ON is message. Seems to be turned off, confirmed by look into php.ini. Why is there a red cross displayed on screen if the setting is ok? |
||||||
| Additional Information | |||||||
| Tags | No tags attached. | ||||||
| Attached Files | |||||||
|
|
|||||||
Notes |
|
|
(0002647) trevormorse (manager) 2012-09-04 10:42 |
We are testing that both session.use_trans_id and session.use_only_cookies are both off before marking as ok. I *believe* this is incorrect as having session.use_only_cookies on (the default is on since 5.3) should cover the bases here. I'm confirming before making the fix. |
|
(0002649) caseydk (administrator) 2012-09-16 23:22 |
Resolved by Trevor here: https://github.com/caseysoftware/web2project/pull/139 [^] |
| Mantis 1.1.8[^] Copyright © 2000 - 2009 Mantis Group |