World: r3wp
[!Cheyenne] Discussions about the Cheyenne Web Server
older newer | first last |
Maarten 10-Jun-2007 [1473] | Terry: do you mind? |
Terry 10-Jun-2007 [1474x2] | ? |
What, Im Trolling again? | |
Maarten 10-Jun-2007 [1476x2] | No! I meant : do you mind logging in every time.... |
And if so, what do you prefer and how do you solve it. | |
Terry 10-Jun-2007 [1478] | ah ;) yeah.. its a hassle |
Dockimbel 10-Jun-2007 [1479] | Terry: I may add an option to make sessions persistent on client-side, but that require cookies with expire time, means failing again in REBOL timezone issues... |
Maarten 10-Jun-2007 [1480] | Funny, I consider it basic security |
Dockimbel 10-Jun-2007 [1481] | me too |
Terry 10-Jun-2007 [1482] | What i did with Framewerks is when a client logs in, I generate a random hash, and store it as a cookie, as well as on the DB associated with that user. |
Graham 10-Jun-2007 [1483] | Logging in is good |
Terry 10-Jun-2007 [1484] | Set the cookie to expire in 10 hours (log in once a day) |
Graham 10-Jun-2007 [1485] | the application can automate if necessary |
Oldes 10-Jun-2007 [1486] | I have expiration in 30minutes if there is no action |
Maarten 10-Jun-2007 [1487] | On wirting modules, is this how it works: (?) - create a mod-<name>.r - start with install HTTPd-extension - name 'mod-name - order -> this I don't get but it controls the flow through mezzanines the rest is custom code Q: what other data is available in a mod and what is the order thingy? |
Terry 10-Jun-2007 [1488] | I associate the the IP with the user a well.. if the IP is a mismatch, the cookie is void |
Dockimbel 10-Jun-2007 [1489] | Re: php / fastcgi, didn't had time to work on it this week, but it's high priority for my company, we need to put a few php apps onlin with Cheyenne, so I'll work on that in the next days. |
Oldes 10-Jun-2007 [1490] | thanks.. I was just trying to run the php test but it fails.. so I was asking |
Dockimbel 10-Jun-2007 [1491] | php test is working, let me see if there's no regression in last release... |
Oldes 10-Jun-2007 [1492] | If there will be possibility to run php from cheyenne, I could stop using apache at home for testing |
Terry 10-Jun-2007 [1493] | What's the issue with windows cookies? .. if there's a timezone difference, can you not adjust the expiration accordingly? |
Dockimbel 10-Jun-2007 [1494] | Not accurately on Windows platforms due to REBOL inability to handle local summer time (daylight time saving period). |
Terry 10-Jun-2007 [1495x2] | Well, can still set it generally, no? |
20 mins may not work, but 20 hours give or take should | |
Dockimbel 10-Jun-2007 [1497x2] | The workaround is to call directly the win32 API to get the correct timezone offset, so requires /Library component. |
sure, 20 hours would not be an issue ;-) | |
Terry 10-Jun-2007 [1499x2] | Or, you could ask for the TZ? |
Although that's a bit nasty. | |
Dockimbel 10-Jun-2007 [1501] | Oldes: I've stopped using Apache locally to run php apps (like phpMySQL) since 2 weeks ;-). |
Terry 10-Jun-2007 [1502] | I was running PHP fine. |
Dockimbel 10-Jun-2007 [1503] | Terry: I'll provide an option in the next release to add session cookie expiration time, but will be "at your own risks" ;-). |
Terry 10-Jun-2007 [1504] | speaking of PHPMySQL.. that piece of software is begging for an upgrade. |
Dockimbel 10-Jun-2007 [1505] | phpMySQL => phpMyAdmin |
Terry 10-Jun-2007 [1506x3] | how about regular cookie expiry? |
yeah.. that's what I meant too ;) | |
How about the trailing slash issue with embed-mode? | |
Dockimbel 10-Jun-2007 [1509x2] | Regular cookie expiry, it's up to the developer to handle that (the RSP 'set-cookie func is still pending). |
What's the issue ? | |
Terry 10-Jun-2007 [1511] | well, it might just be the demo.. but if you put a url with a slash, you get a different result than without the slash.. sometimes |
Dockimbel 10-Jun-2007 [1512] | Oldes: I've published some info about PHP support here: http://softinnov.org/cheyenne/blog.cgi?view=0005 |
Oldes 10-Jun-2007 [1513] | thanks.. I will take a look |
Terry 10-Jun-2007 [1514] | http://127.0.0.1/testappand http://127.0.0.1/testapp/are two different pages.. |
Graham 10-Jun-2007 [1515x2] | You haven't redefined 'dehex have you? |
I'm getting odd results ... | |
Terry 10-Jun-2007 [1517] | The first page takes you to "Welcome to defautl page" and the second to the testapp login screen |
Dockimbel 10-Jun-2007 [1518] | Terry: that's the intended behaviour, if you request /testapp, it calls the 'testapp function in root object (or 'default func if 'testapp is not defined), it you request /testapp/, it calls the 'default function in the 'testapp object. But that's the demo "site", you can change the behaviour in your own "site" if it doesn't fit your needs. |
Terry 10-Jun-2007 [1519x2] | Yeah.. that's what I thought.. in the real world that could be an issue |
It's one thing when you control the URL via the script, it's another is someone is requesting the page. | |
Graham 10-Jun-2007 [1521] | https://www.compkarori.co.nz/newpatient.rsp if I enter "123 ABC street" on the street1 and submit, the dehex result is "3 ABC Stree" |
Dockimbel 10-Jun-2007 [1522] | Yeah, I know, but I'm not sure that this kind of thing have to be supported at ow level in mod-embed, or left for the developer to handled (and adapt the default behaviour). |
older newer | first last |