[Zope] Question: user homepages

Cees de Groot cg@cdegroot.com
Wed, 14 Jul 1999 07:35:03 +0200


Thanks for the explanation, Alexander!

alex@mop.no said:
> That's browser-specific -- Zope's management interface does not do
> persistent logins. 

I presume Zope sets a cookie after login that identifies the user, not? In 
that case, wouldn't it be easy for Zope to overwrite this cookie with junk in 
response to a logout button so the next request fails with a security error?

> Just open a new browser instance. In IE 5.0, just open a new window.

Doesn't work with Netscape on Linux, it seems. 


-- 
Cees de Groot               http://www.cdegroot.com     <cg@cdegroot.com>