This patch adds a block for https:// user login and gives the ability to lock user sessions to an IP or/and user agent. I haven't actually tried to spoof anything to make sure it actually works, but the theory is all there for DRUPAL-4-7.
| Comment | File | Size | Author |
|---|---|---|---|
| session_control.security.patch | 5.04 KB | deekayen |
Comments
Comment #1
Bèr Kessels commentedMoved the patch to http://drupal.org/node/1577