Software Interview Questions
Questions Answers Views Company eMail

4 down vote favorite share [g+] share [fb] share [tw] I am developing my site using server side sessions using redis as backend for saving the session. Now the issue which is bothering me is of user leaving the website without logging out. I mean user simply closes the browser which causes the cookie to be deleted. Now session of that user still exists on the server and will not be used again as new login requires creating a new session due to security reasons. To avoid the case where hacker steals the old cookie and use it after user login again with same old session id. In essence user leaves the website without explicitly logging out and his session will be deleted after certain time limit of inaccessibility. I am thinking time limit of 30-60 minutes. Also with every new request from user his cookie will also be updated to keep track of when the user last time accessed the site. But nowadays, people let site remain open for long time without accessing it. For example users open facebook and gmail in new tabs and forget about them for 2-3 hours and still they are not asked to login again. Is letting a 2-3 hours old cooke access the session secure? My concern is someone steals user cookie and use it 2-3 hours later. Thinking on this topic has also forced me to question how facebook manages security if user can use a session where they are not accessing it for long periods of time and still they remain logged in. Or is it not secure for me to keep logged in when am not accessing the site session for longer period of time? It can be the case also there is some pinging mechanism using which sites keep track of user having their site open in a browser and when browser closes they are notified and can work accordingly. My website is a social network and needs all those security and usage features which a social network may need. I am new to web security and web development in general and may be the case where my above questions may seem a little basic. If you feel that is the case kindly point to some good reference where I can read and find answers to my question.

NIIT,

1743

How to stimulate the people in the recruitment procces?

2898

I have 2 customers “Customer A” and “Customer B”.I need to create a sales order for both of them using ZOR sales doc type. Both need the same material m-01. But for customer “a” the item category of M-01 should be TAN and for “b” the item category is TANN. where should i do the configuration.in sap sd

IBM, Intelligroup,

3 7383

Hi can any bady tell me who provide QA,QTP,QC,training please let me know i need help i want get training thanks in advance

2 3901

What are different assignments we will do in SAP SD tab in the IMG and please let me know difference between the assignment & determination?

Wipro,

3 6107

what is ECC in sap bi?

2300

what is DBCONNECT AND UDCONNECT IN SAP BI?

1 8568

how to find the heap size is full in weblogic server?

DELL,

1 5268

what is lamda expression?

3 4755

Please provide me the the difference between Procure to Pay(P2P),Buy to Pay(B2P)and Invoice to Pay(I2P)

Cap Gemini,

2 20739

When concatenating two PDS can any one PDS can have empty dataset i.e without any value(Dummy).

2 6157

ioc vs dependency injection?

1911

Hi,My name is Saurabh I have done BMS & currently working in Wipro BPO (1 year). I want to pursue my career in SAP. As I am totally new in the IT field(no course & no experience) Please could you suggest whether to do a certification from Certified institutes or Non Certified institutes.What is the difference? Also, Is MBA necessary to do certification from Certified institutes?

1869

Should the user logged off... to assign the missing authorizations?

3 5381

what are the default arguments for pl/sql program?

1 4482


Un-Answered Questions { Software }

What does a star next to a powerpoint slide mean?

2269


How to send an http post request in angularjs?

428


What is CSS Box Model and what are its elements?

341


Which function in C can be used to append a string to another string?

649


What are the basic actions that can be performed on search engines? - SEO

957






Do google analytics will track actual click path of individual visitor or not?

63


What are static blocks and static initalizers in java ?

587


Explain how to do environment configuration in laravel?

418


What are the main key components in web applications?

755


Some Realtime Examples on Exits .

1726


What are the types of pointers?

608


What is prime number in java?

539


What is drda ?

603


Explain Environment variable ?

126


what are the properties and different types of sub-queries? : Sql dba

510