Domain session sharing

We are currently facing the problem of sharing the same session across subdomains. we use the jboss server.

Users gain access to a site that matches their language, for example, en_US, which has a unique domain name. A cookie is created that matches the domain. Users are allowed to switch to other locales that have a different domain name. The problem is that a new cookie is being created for another domain that is losing information stored in a previous session. We need to use the same session cookie across domains.

Ex-domain: sample.au sample.co.uk sample.us

I asked to study Iframe / p3p solutions. I am new to this concept. can you advise me how to do this.

Thank you in advance

+5
source share
4 answers

What you need is a single sign on . You can use your site for your A..Y sites with a centralized Z site for session management / subscription.

  • user arrives at site A, does not present a session identifier
  • site redirects user to site Z
  • Site Z creates a session, possibly after user authentication and deletes the cookie Z, redirects the user back to site A with a URL that contains an additional site to transmit useful information. What does a user session identifier mean?
  • site A disables the session cookie, allowing the user to continue using his shared session on A

, B

  • B , Z
  • Z , , B
  • B cookie, .

, , ( cookie ), , -, , .

+9

Cookies , . , foo.example.com bar.example.com cookie, example.com. , cookie cookie .example.com ( ), .

+5

cookie , , . subdomain1.domain.com subdomain2.domain.com cookie :.domain.com.

JBoss javax.servlet.http.Cookie.

+3

.

cookie

http://www.15seconds.com/issue/971108.htm

It seems that "Redirect" is used to translate cookies between domains. But it is too complicated. For reference only.

0
source

All Articles