summaryrefslogtreecommitdiff
path: root/session
diff options
context:
space:
mode:
authorFalk Huber <falk.huber@t-systems.com>2016-01-08 10:39:14 +0100
committerFalk Huber <falk.huber@t-systems.com>2016-01-08 10:39:14 +0100
commit3d8e680aca7f7d5f44ae8d19d73537861b62c2bb (patch)
tree67a7d249a7b113d27f6a3f73abcb1980b11d5062 /session
parent5c5ee9e953dd0caf978630b1c3147447d6cb58a7 (diff)
downloadadodb-3d8e680aca7f7d5f44ae8d19d73537861b62c2bb.tar.gz
adodb-3d8e680aca7f7d5f44ae8d19d73537861b62c2bb.tar.bz2
adodb-3d8e680aca7f7d5f44ae8d19d73537861b62c2bb.zip
Adding the httponly flag
Diffstat (limited to 'session')
-rw-r--r--session/adodb-session.php4
-rw-r--r--session/adodb-session2.php4
2 files changed, 4 insertions, 4 deletions
diff --git a/session/adodb-session.php b/session/adodb-session.php
index 9bc51dc4..7c060d0a 100644
--- a/session/adodb-session.php
+++ b/session/adodb-session.php
@@ -70,7 +70,7 @@ function adodb_session_regenerate_id()
} else {
session_id(md5(uniqid(rand(), true)));
$ck = session_get_cookie_params();
- setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure']);
+ setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure'], $ck['httponly']);
//@session_start();
}
$new_id = session_id();
@@ -80,7 +80,7 @@ function adodb_session_regenerate_id()
if (!$ok) {
session_id($old_id);
if (empty($ck)) $ck = session_get_cookie_params();
- setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure']);
+ setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure'], $ck['httponly']);
return false;
}
diff --git a/session/adodb-session2.php b/session/adodb-session2.php
index 2cfdc10d..023c4907 100644
--- a/session/adodb-session2.php
+++ b/session/adodb-session2.php
@@ -100,7 +100,7 @@ function adodb_session_regenerate_id()
} else {
session_id(md5(uniqid(rand(), true)));
$ck = session_get_cookie_params();
- setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure']);
+ setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure'], $ck['httponly']);
//@session_start();
}
$new_id = session_id();
@@ -110,7 +110,7 @@ function adodb_session_regenerate_id()
if (!$ok) {
session_id($old_id);
if (empty($ck)) $ck = session_get_cookie_params();
- setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure']);
+ setcookie(session_name(), session_id(), false, $ck['path'], $ck['domain'], $ck['secure'], $ck['httponly']);
return false;
}