WebApp Sec mailing list archives

Re: Tying a session to an IP address


From: "Adam Tuliper" <amt () gecko-software com>
Date: Mon, 10 May 2004 12:00:05 -0400

One item to not forget is AOL's "super proxies" could
 create a problem on a scheme where you need to
reauthenticate (provided the world is able to use your
application) if the ip address changes. They have multiple
proxy servers (however, their proxy ip lists are published
so this can be worked around, but... its still a point to
note)


---------------------------------------------------------------------
Web mail provided by NuNet, Inc. The Premier National provider.
http://www.nni.com/


Current thread: