Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
RE: Is logoff feature necessary May 02 2006 09:56AM
Deepu Thomas Philip (deepu philip paladion net)
I would say it to be wrong!!!!

Some of the many issues would be as follows:

1. What if the user forgets to close the window? -> Then the session would
be kept alive
2. If there is no 'Logout' then the data is always visible when the browser
is kept alive.
3. Suppose another instance of the same b...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus