Well, I spent a bit more time on this, and narrowed it down to
ini_set('session.referer_check', $this->host);, which I guess is about
the only difference between medium and low security (except cookie
duration). When I remove the line from cake/libs/session.php (from
the 'medium' case), everything is fine. Not sure why this problem
only presents on Safari, and not exactly sure what solution I'll
choose to address it, but at least I better understand my options.
Check out the new CakePHP Questions site http://cakeqs.org and help others with
their CakePHP related questions.
You received this message because you are subscribed to the Google Groups
"CakePHP" group.
To post to this group, send email to [email protected]
To unsubscribe from this group, send email to
[email protected] For more options, visit this group at
http://groups.google.com/group/cake-php?hl=en