随机问题,但是是否有人可以在浏览器中为站点黑客并创建会话cookie?
我之所以问这个问题,是因为我目前正在rails中创建回调。我的回调正在检查
before_action :employee_logged_in? [:edit, :update]
...
Private
def employee_logged_in?
if session[:current_employee_id].nil?
flash[:danger] = "Employee needs to be logged in"
redirect_to login_path
end
end