What should be stored in the session and what is in the cookie?

I am wondering if there are any recommendations or recommendations regarding the use of sessions and cookies? What should and should not be stored in them? Thank!

+3
source share
2 answers

These documents read well about security issues with session cookies and how to get around them.

Thus, you save the secret key on the server. Using this key, you can calculate the secure hash by the secret key, timestamp and any data that you want in the cookie. You include a secure hash, timestamp, and cookie data.

, , . cookie.

+3

, .

, , . , , , . , , , . (I.e. , , .)

+1

Source: https://habr.com/ru/post/1724864/


All Articles