Jump to content

Community

Recommended Posts

  • 4 weeks later...

I think I may have this figured out. Just giving it some more time to make sure. I created a file and added session.gc_maxlifetime = 36000 to it to test this(I'll lower it if the test works). You'll have to save that file as either php.ini, php5.ini, or .user.ini depending on what you're using and put that in your root.

It's kept people on the online list for two and a half hours so far without issue.

Just FYI, I'm not an expert at this. I think the risk is low but just wanted to pass it along. I think the biggest risk to this is session hijacking since they have more time.

This whole thing makes me wonder why it isn't programmed to base it on the last time that person was online instead of active sessions. Maybe that's more resource intensive to do it that way? It would provide more flexibility to something like this. 

Edited by theblackelk
Link to post
Share on other sites
  • Recently Browsing   0 members

    No registered users viewing this page.

×
×
  • Create New...

Important Information

We use technologies, such as cookies, to customise content and advertising, to provide social media features and to analyse traffic to the site. We also share information about your use of our site with our trusted social media, advertising and analytics partners. See more about cookies and our Privacy Policy