Hi Blerim, 

thanks for the input. 

Unfortunately memcached is not the perfect solution as it doesn't provide any 
kind of authentication and/or encryption, with makes it fine for pure local use 
but hard to sell in a security-aware environment - especially since session 
data is quite an interesting attack surface. 

But thanks for the link, I'll try to transfer the approach to PostgreSQL as 
soon as I find the time. Unfortunately this seems to be not the most common 
approach - I couldn't find too much information about it on the net. If Icinga 
Web actually uses whatever PHP provides I hope that it will work as soon as I 
convinced PHP to use PostgreSQL for sessions (so far I only managed to break 
session storage entirely, which at least shows that I found the right place to 
tweak the config :-)). 

Cheers, 

  Peter.
_______________________________________________
icinga-users mailing list
icinga-users@lists.icinga.org
https://lists.icinga.org/mailman/listinfo/icinga-users

Reply via email to