5 ms·
You'd still be able to get the cookie when the client sends it bnack to the server on subsequent, non-SSL requests. It's gotta be SSL all the time.
by santry 16y ago
You'd still be able to get the cookie when the client sends it bnack to the server on subsequent, non-SSL requests.
It's gotta be SSL all the time.
- deleted 16y ago[deleted]