Answer the question
In order to leave comments, you need to log in
Cookie signature hash to check integrity. It makes sense?
Hello community! I would like to know if it makes sense to sign cookies with a hash to check them for integrity (not changing the values by the user themselves)? First of all, I understand that I should not store any sensitive data in cookies and use sessions instead. This is exactly what I do. But still, I don't like it when the user can modify even not so important data.
Right now I'm using this scheme: suppose we have cookies for:
Answer the question
In order to leave comments, you need to log in
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question