Golgappa.net | Golgappa.org | BagIndia.net | BodyIndia.Com | CabIndia.net | CarsBikes.net | CarsBikes.org | CashIndia.net | ConsumerIndia.net | CookingIndia.net | DataIndia.net | DealIndia.net | EmailIndia.net | FirstTablet.com | FirstTourist.com | ForsaleIndia.net | IndiaBody.Com | IndiaCab.net | IndiaCash.net | IndiaModel.net | KidForum.net | OfficeIndia.net | PaysIndia.com | RestaurantIndia.net | RestaurantsIndia.net | SaleForum.net | SellForum.net | SoldIndia.com | StarIndia.net | TomatoCab.com | TomatoCabs.com | TownIndia.com
Interested to Buy Any Domain ? << Click Here >> for more details...

PHP Interview Questions
Questions Answers Views Company eMail

when we submit any string in single inverted comma('abc') with get or post method,we will get exact string with single inverted comma('abc')by using $_REQUEST[]. But it is giving (\'abc\'). so anybody please help me to remove that slash,therefore i will get exact string...

2 6907

How session manage in wordpress

HCL, ITBS, TCS,

1 4826

What is the different between cookies and session in php?

13 26204

what are the differents between 'action' and 'target' in form tag?

3 16408

What’s the difference between sort(), assort() and ksort? Under what circumstances would you use each of these?

2 22175

hi to all i am fresher in php and want to learn php and want a fresher job in php. how to total time i expend to learn php and what is freshers salary.

9 11758

How to download a php script directly in your script page?

A1 Technology, Zmanda,

3 7088

Extract url from this string? It should be flexible for all strings, not for this string only. "yahoo.comyahoo.co.inhotmail.org"

A1 Technology,

1 5827

recurring account in PayPal payment gateway?

A1 Technology, HBL, HBL Power Systems, IBM,

1 8884

If there are 10 text boxes in a form having same name, their value are different. Value of which textbox will be received on action script?

A1 Technology, Bajaj, DG, Genpact,

20 24320

Difference between notify url, return url in paypal payment gateway?

A1 Technology, Capital IQ, CMS, Essar, HCL, IAS, Karvy, L&T, State Bank Of India SBI, TATA, Tisco, WNS,

4 34544

what is array_search() in php?

2 6009

How will you sened requests from server1 to server2 from server2 to server3 and so on .. w/o letting the output come to the browser or say the client end in php

Swayam, TCS, Yahoo,

3 8941

How does header() work . What do they tell the server same question for SESSIONS

Yahoo,

2 5438

Describe the differences between the object models in PHP 4 and PHP 5.

1 4043


Post New PHP Questions

Un-Answered Questions { PHP }

What is the use of mysql_real_escape_string in php?

901


How to connect to mysql from a php script?

1046


How to get the total number of values in an array?

1003


Explain preg_Match and preg_replace?

973


Distinguish between urlencode and urldecode?

983


What is boolean in php?

978


What is difference between array_merge and array_combine?

1067


What is put method in php?

994


What is the difference between rest and soap?

1124


How to open a file for reading?

1019


What is the difference between exception::getmessage and exception::getline?

954


Write a program to get lcm of two numbers using php?

956


How to execute an sql query? How to fetch its result?

1114


What is the advantage of runtime polymorphism?

937


4 down vote favorite share [g+] share [fb] share [tw] I am developing my site using server side sessions using redis as backend for saving the session. Now the issue which is bothering me is of user leaving the website without logging out. I mean user simply closes the browser which causes the cookie to be deleted. Now session of that user still exists on the server and will not be used again as new login requires creating a new session due to security reasons. To avoid the case where hacker steals the old cookie and use it after user login again with same old session id. In essence user leaves the website without explicitly logging out and his session will be deleted after certain time limit of inaccessibility. I am thinking time limit of 30-60 minutes. Also with every new request from user his cookie will also be updated to keep track of when the user last time accessed the site. But nowadays, people let site remain open for long time without accessing it. For example users open facebook and gmail in new tabs and forget about them for 2-3 hours and still they are not asked to login again. Is letting a 2-3 hours old cooke access the session secure? My concern is someone steals user cookie and use it 2-3 hours later. Thinking on this topic has also forced me to question how facebook manages security if user can use a session where they are not accessing it for long periods of time and still they remain logged in. Or is it not secure for me to keep logged in when am not accessing the site session for longer period of time? It can be the case also there is some pinging mechanism using which sites keep track of user having their site open in a browser and when browser closes they are notified and can work accordingly. My website is a social network and needs all those security and usage features which a social network may need. I am new to web security and web development in general and may be the case where my above questions may seem a little basic. If you feel that is the case kindly point to some good reference where I can read and find answers to my question.

2134