我不清楚PHP的session.use_trans_id的含义和用法.
在线文档中,它说:
the run-time option
session.use_trans_sid are enabled,
relative URIs will be changed to
contain the session id automatically.
Does this mean it will ALWAYS add the session id? Or only when cookies are not working?
它会自动将它添加到javascript的window.location还是ajax调用?
另外,在PHP.ini文件中,它说:
trans sid support is disabled by default.
Use of trans sid may risk your users security.
Use this option with caution.
- User may send URL contains active session ID
to other person via. email/irc/etc.
- URL that contains active session ID may be stored
in publically accessible computer.
- User may access your site with the same session ID
always using URL stored in browser's history or bookmarks.
http://PHP.net/session.use-trans-sid
我很困惑,在线文档说,除非你使用PHP 4.2.0或更高版本,否则你需要手动启用它.那么为什么默认会禁用它? (我正在使用PHP 5).
此外,这个功能是否必须处理禁用cookie的用户?