[pmwiki-users] PmWiki session variables

Patrick R. Michaud pmichaud at pobox.com
Sun Jun 22 10:27:45 CDT 2008


On Sun, Jun 22, 2008 at 04:11:18PM +0100, Hans wrote:
> How can session variables be safeguarded so that they only apply to a
> wiki through which they were created?
> 
> I just noted that I got  a value for {$AuthId} in one wiki, which
> does not use AuthUser, and where the $AuthId was set by another wiki,
> which uses AuthUser, through the log-in process.
> 
> Both wikis were running on my machine in the same browser. Closing the
> browser and opening it again cleared the unwanted $AuthId.

See http://www.pmwiki.org/wiki/PmWiki/Passwords#farm .
Even though the question mentions farms, it's true for any
domain that has multiple wikis on it where the PHP sessions
are likely to be shared.

Pm



More information about the pmwiki-users mailing list