[Twisted-web] Session Based Security for PyAmf application

Phil Mayers p.mayers at imperial.ac.uk
Mon Aug 18 17:40:51 EDT 2008


> potentially possible to forge credentials. I don't know for sure 
> whether guard checks the IP address of a request against the original 
> one that created the session in the first place, but even that could 
> technically be forged.

Caches.



More information about the Twisted-web mailing list