Home > By category > Scripts >Modules > 443 Session



443 Session

  • Downloads: 
  • Views: 
  • Rating:

#D7CX I pledge that 443 Session will have a full Drupal 7 release on the day that Drupal 7 is released.

Inspired by a blog post on Cracking Drupal: Drupal and SSL - Multiple Recipes to Possible Solutions, This project is for sites that use mixed security, or HTTPS for some pages and HTTP for the rest. More specifically, all logged in users will use HTTPS for their entire session, while anonymous users will use HTTP.

This configuration is often used to balance performance and security as HTTP pages offer much faster response times. Search engine optimization is also another big reason to have mixed security, as SEOs will encourage you to have HTTP rather than HTTPS pages indexed by search engines.

A potential issue in using such a configuration is session hijacking. This can happen when a user logs in on a HTTPS page but later navigates to a HTTP page. Under this scenario, the user's session cookie is sent unencrypted and in the clear. A potential attacker can steal this cookie and use it to gain access to the secure pages of the site.

This module prevents this from happening by requiring users to use HTTPS for their entire session after logging in. If they navigate to a HTTP page, the session cookie will not be sent. A side affect to this is that they will appear to be logged out while visiting the HTTP page. This module acts to mitigate any confusion caused by this, by implementing a custom access denied handler that notifies the user that they are already logged in, if they try to log in again.

The module also implements path management by redirecting user login and registration pages to use HTTPS.

When using this module, it is recommended to not use the login block, as it will force all pages containing the block to use HTTPS. Rather, use a menu link to the login page, "user/login".

Free download from Shareware Connection - #D7CX I pledge that 443 Session will have a full Drupal 7 release on the day that Drupal 7 is released.

Publisher: Kevin Mathis | License: Freeware | Price: 0.00
Version: 6.x-1.0-alpha2 | Size: 10 KB | Platform: PHP, Scripts
Released Date: 15-04-2013 | Rating: 0 | Title: 443 Session

Author Url: http://drupal.org
Program Info Url: http://drupal.org
Download Url: http://ftp.drupal.org/files/projects/session443-6.x-1.0-alpha2.tar.gz

443 Session keywords:
443 Session related downloads:

PortSight Secure Access 2.1 Update 3 - User Management and Access Control - PortSight Secure Access allows developers to manage users and their access to WebForms and WinForms applications, Web Services, and Web content. It features user groups, roles, permissions, auditing and delegation of administration.

Portsight Secure Access 1.1 For Asp.net - PortSight Secure Access allows developers to manage users and their access to WebForms and WinForms applications, Web Services, and Web content. It features user groups, roles, permissions, auditing and delegation of administration.

iPIG Secure Access VPN Server - Set up a VPN server in less than 1 minute. Free client software. iPig creates a secure "tunnel" that protects your inbound and outbound communications (Email, Web, IM, VOIP, calls, FTP, etc.) at any Wi-Fi hotspot or wired network.

Quinnect Remote Support - Quinnect is a remote support solution for quick and secure access to remote computers over the Internet.

NolaPro Free Web-Based Accounting - NolaPro is a free, web-based ERP, Accounting and Inventory Suite. Install on your own PC for secure access via the web. No user/data restrictions, nag screens, or expiration. Customization available to fit NolaPro to your business or industry.

Shareware Connection periodically updates pricing and software information of '443 Session' from company source 'Kevin Mathis' , so some information may be slightly out-of-date. You should confirm all information before relying on it. Software piracy is theft,  Using '443 Session' crack, password, serial numbers, registration codes, key generators is illegal and prevent future development of 443 Session.

New Reviews

SlimCleaner - Nearly all PC users need to use various utilities to enhance performance of their laptop or desktop from time to time. Windows inbuilt utilities can serve the purpose but when you can find more capable third party apps at low or zero cost, why ...

RawTherapee - There are so many image editors out there but when it comes to powerful and versatile RAW file editors, the choices are somewhat limited. With Adobe switching to Cloud-based subscriptions for most of its apps, semiprofessional users including ...

DriverPack Solution Professional - To keep your laptop or desktop performing well consistently, it is important to pay attention to some aspects. Using top antivirus utility, cleaning up junk feels periodically are some such examples. However, you also need to keep drivers of ...

Plants vs. Zombies 2 - These days there are lot of tower defense games on offer. Coming from the stable of Electronics Arts, which is one of the leading companies in the gaming arena, Plant vs. Zombies is a decent game particularly if you are interested in garden ...

Skitch - Skitch is a user friendly and lightweight image capturing app for OS X that has been in the scene for quite some time. After its purchase by Evernote, the nifty Mac screen-capture tool has undergone some changes. You can still perform tasks with ...

PC DeCrapifier - There is hardly any computer user who does not want to keep the PC running at top speed. However, unnecessary software and bloatware can reduce the speed and performance of your PC. Such Apps often come pre installed with laptops and desktops. ...

dMaintenance - As a computer user, you may need to deal with several types of applications. For a lot of Windows users, the integrated tools of the OS may not suffice at times. They may need to use several third party apps for needs such as entertainment, ...

Windows Media Player - There is hardly any Windows user who has not used Windows Media Player. This app was bundled with nearly each version of Windows and whether you like or dislike the software, it is likely you had a brush with it during your initial days with the ...

Roboscan Internet Security Free - Owing to incessant onslaught of various web based and other malware, it is not possible to keep your PC secured unless you use a capable system security suite. As a matter of fact, it is better to use feature- rich Internet security software than ...

HandBrake - Nearly every PC user gets into a situation when they fail to understand what to do with a DVD that will not play back on DVD player or PC owing to format restrictions. Some users may also feel irked about a video file downloaded from web refusing ...




New Downloads

VAIS Audio Editor

VAIS Audio Editor allows
performing various operations
with audio data by displaying
a waveform image of the audio
file. ...

Audio Record Edit Toolbox

Audio Record Edit Toolbox is a
multifunctional audio editor
that helps enhance recordings
and any other audio file you
...

DataMiner API

An API for scraping the
Internet via cURL, HTMLTidy,
and SimpleXML.

Simpson's 1/3 and 3/8 rules

SIMPSON: Simpson's rule for
quadratic and cubic numerical
integration

WP Mass Delete

The WP Mass Delete plugin
(developed by CyberSEO.net)
allows you to mass delete
WordPress posts and pages
according to ...

MP3WRITE and MP3READ

Includes 2 functions to write
and read MP3 files. It works
like the commands WAVWRITE and
WAVREAD.

JImageUpload for FTP

This is a JFileUpload add-on
that allows to preview images
before upload

Private Message SYStem for
Scripts

Private Message SYStem will
send messages just like
webmail but only faster.

bdf_trim

Extract specific Channels from
BIOSEMI DATA FILE (BDF)

pentagonal tiling of the
Poincare Disc

pic shows recursion level of 7

HelloTxt integration

This module provides API
integration with the HelloTxt
microblogging and social
networks service.

Draggable SVG for Image
Effects

This javascript script allows
to drag&drop SVG entities over
an web page