The Community Forums

Interact with an entire community of cPanel & WHM users!
  1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

Logout - security threat

Discussion in 'Security' started by myouell, Feb 3, 2005.

  1. myouell

    myouell Registered

    Joined:
    Feb 3, 2005
    Messages:
    1
    Likes Received:
    0
    Trophy Points:
    1
    Location:
    Cambridge
    Hi,

    Can't log out:

    I click the "log out" button. But as soon as I go back to the URL/cpanel I am "logged in" again without needing to enter a username and password. So on a public computer that is rather bad me thinks.

    On logout remove session data / cookies would be a reasonably idea.

    I am using Netscape mostly.

    Thanks,
    Mike Youell.
    http://www.cambridgetraining.co.uk
     
  2. dgbaker

    dgbaker Well-Known Member
    PartnerNOC

    Joined:
    Sep 20, 2002
    Messages:
    2,578
    Likes Received:
    3
    Trophy Points:
    38
    Location:
    Toronto, Ontario Canada
    cPanel Access Level:
    DataCenter Provider
    Not a Security Threat.

    This is not a cpanel issue.

    By default this how HTTP Authentication works, that's why it is always recommended to close your browser after logging out.

    If you want Cookie Authentication it needs to be enabled in WHM under Tweak Settings.

    Disable Http Authentication for cPanel/WebMail/WHM Logins (forces cookie authentication)


    Note you can have one or the other but not both.
     
Loading...

Share This Page