How to encrypt session id in cookie?

后端 未结 8 1548
春和景丽
春和景丽 2021-02-06 05:43

While I was reading about session hijacking articles, i learned that it would be nice to encrypt session id value that is stored in a cookie.

As far as I know, when I s

8条回答
  •  挽巷
    挽巷 (楼主)
    2021-02-06 06:16

    Assuming your session cookie is a GUID, there is no point encrypting it. It would just replace one pseudo-random string with another.

提交回复
热议问题