doucang6739 2013-09-28 18:34
浏览 100
已采纳

TOR隐藏服务:PHP会话

If someone was making a TOR hidden service using PHP, Apache, and MySQL, would sessions have to be done differently?

Considering that many different users could be coming from the same IP address (using the same exit node), how does that change things?

Should I rely on setting client-side cookies that expire after a certain time period once logged in? Should I be checking cookies to see if they are logged in instead of $_SESSION?

I have searched high & low on here and Google and can't seem to find anyone else asking this question.

I have read the TOR documents on configuring a hidden service, how TOR works, etc.

  • 写回答

1条回答 默认 最新

  • douce1368 2013-09-28 18:40
    关注

    The default PHP sessions work perfectly well with TOR. There is no need to change anything.

    All other questions are not related to TOR, but are subject to the usual considerations when using sessions. Do you want a login to expire after a certain inactive time? If yes, you have to implement that yourself.

    本回答被题主选为最佳回答 , 对您是否有帮助呢?
    评论

报告相同问题?

悬赏问题

  • ¥15 oracle集群安装出bug
  • ¥15 关于#python#的问题:自动化测试
  • ¥20 问题请教!vue项目关于Nginx配置nonce安全策略的问题
  • ¥15 教务系统账号被盗号如何追溯设备
  • ¥20 delta降尺度方法,未来数据怎么降尺度
  • ¥15 c# 使用NPOI快速将datatable数据导入excel中指定sheet,要求快速高效
  • ¥15 再不同版本的系统上,TCP传输速度不一致
  • ¥15 高德地图点聚合中Marker的位置无法实时更新
  • ¥15 DIFY API Endpoint 问题。
  • ¥20 sub地址DHCP问题