Jump to content

Security question


Guest kissybissy

Recommended Posts

When we access the control pannel of the board the url to it is kept in the browser and it allows you to gain access to the administrative section even after the administrator is logged out. Was something done with this new version to make the link expire so if someone uses the computer they cannot get into the administrative section of the board by clicking on the link that's in the browser historic?

Link to comment
Share on other sites

Firstly, unless you modify IPB, the ACP session is tied to your IP address. So no one can hijack it, unless they have the same IP address.

Secondly, it auto-disables the session after 15 minutes of inactivity.

And thirdly, yes, there is now a manual log out link which I would recommend clicking on if clearing the session is a top concern. :)

Link to comment
Share on other sites

Archived

This topic is now archived and is closed to further replies.

  • Recently Browsing   0 members

    • No registered users viewing this page.
×
×
  • Create New...