dylan.dpc 2017-08-17 18:49:30 answer in the channel :stuck_out_tongue:
dan 2017-08-17 18:49:34 smd
dylan.dpc 2017-08-17 18:50:10 :smile:
dan 2017-08-17 18:50:17 HTTP is stateless so you have to have something to store the session you could use a cookie :wink:
dylan.dpc 2017-08-17 18:50:25 giphy:
dan 2017-08-17 18:50:42 but if you are european you have to put that stupid we use cookies thing on your site right?
dylan.dpc 2017-08-17 18:51:16 is it a european thing?
dan 2017-08-17 18:51:29 IS IT DYLAN?
lloy0076 2017-08-17 18:52:23 @dan - yes, I agree with you in principle, but one *could* (possibly stupidly) set a sesson based on the apparent remote users's IP address which wouldn't require a user to be logged in per se. I wonder if my question is actually a little more subtle...becuase IIRC one can call session_start() (the PHP function) regardless of whether a user is logged into any framework at all.
dylan.dpc 2017-08-17 18:53:56 it will
dan 2017-08-17 18:54:14 what if i spoof Ip or come in from a public vpn?
lloy0076 2017-08-17 18:54:30 Yes, notice the "stupid" bit there :stuck_out_tongue:
dylan.dpc 2017-08-17 18:54:39 :smile:
lloy0076 2017-08-17 18:54:42 I didn't say it would be sensible.
dan 2017-08-17 18:54:45 dylan has all the stupidity in this channel

