> i just want to figure out a way by which i can stop session theft.i thought > if i can get something from user end that is unique for that user.for e.g. > his/her IP .but it will not work when they are behind firewall.they will be > assigned same IP.is there a way for me to get the IP (e.g.202.202.202.202 > thats just an e.g. ) plus computer ip(192.168.0.1 e.g.) i saw once a java > chat server do this.if we can do this then it will help us (SOMEWHAT).
Conduct your business over SSL. That's the only way, otherwise everything is sent plain text and can be intercepted. ---John Holmes... -- PHP General Mailing List (http://www.php.net/) To unsubscribe, visit: http://www.php.net/unsub.php