Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Is logoff feature necessary May 03 2006 11:19AM
Alexis FitzGerald (alexis iol ie)
Hi,

In general, if there is a logon button there should be a logoff button. This
should tidy up the server session etc.

Another concern is that if you have had problems persuading the developer to
put in a logoff button, what other security vulnerabilities might be in the
application-especially if...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus