Hi Session tracking using HttpSession is implemented using Cookies,URL re writing------Justify ... If my question is wrong...why should we go for HttpSession Object , though we have cookies,URL rewrting ,etc priya
httpsession is based on transient cookies i.e. the cookie dies when the browser is closed. Persisitent cookies are the which are stored in secondary storage. There is a limit to the number of cookies that be stored for a server. I guess it is 20 and size of each cookie is also limited. There is also security concern with using cookies if the machine is shared. For example is some site uses cookies and stores password in cookie. I was actually able to read my own password from the cookie. If someone else uses your machine he/she will be able to get hold of your password. Problem with url rewriting - It can only be used with dynamic pages and not static pages i.e HTML. Is some one disables cookies then URL rewriting is the only way out. [ August 11, 2003: Message edited by: Pradeep Bhat ] [ August 11, 2003: Message edited by: Pradeep Bhat ]