From: Tomas Doran Date: Tue, 16 Jun 2009 19:34:51 +0000 (+0000) Subject: Merge verify_user_agent branch X-Git-Tag: v0.23~1 X-Git-Url: http://git.shadowcat.co.uk/gitweb/gitweb.cgi?p=catagits%2FCatalyst-Plugin-Session.git;a=commitdiff_plain;h=b97042c09c997845f4a03872dc4464b3014640ff Merge verify_user_agent branch --- b97042c09c997845f4a03872dc4464b3014640ff diff --cc Changes index 891b2c8,891b2c8..d69c5c7 --- a/Changes +++ b/Changes @@@ -1,8 -1,8 +1,9 @@@ Revision history for Perl extension Catalyst::Plugin::Session -- - Add a test case to prove that logging in with a session cookie still causes -- a new cookie to be issued for you, proving that the code is not vulnerable -- to a session fixation attack. ++ - Add the verify_user_agent config parameter (kmx) ++ - Add a test case to prove that logging in with a session cookie still ++ causes a new cookie to be issued for you, proving that the code is ++ not vulnerable to a session fixation attack. (t0m) 0.22 2009-05-13 - INSANE HACK to ensure B::Hooks::EndOfScope inlines us a new method right now