What are the characteristics of HTTP security session management?

To prevent session fixation and session hijacking attacks, SAP’s HTTP security session management is highly recommended .

What are the characteristics of HTTP security session management? Note: There are 2 correct answers to this question.
A . It uses URLs containing sap-context d to identify the security session
B . The system is checking the logon credentials again for every request
C . The security sessions are created during logon and deleted during logoff.
D . The session identifier is a reference to the session context transmitted through a cookie.

Answer: C,D

Subscribe
Notify of
guest
0 Comments
Inline Feedbacks
View all comments