Browse Source

Destroy session when it becomes invalid

andryyy 8 years ago
parent
commit
49f28ecaf8
1 changed files with 5 additions and 1 deletions
  1. 5 1
      data/web/inc/sessions.inc.php

+ 5 - 1
data/web/inc/sessions.inc.php

@@ -54,5 +54,9 @@ function session_check() {
   return true;
   return true;
 }
 }
 if (isset($_SESSION['mailcow_cc_role']) && session_check() === false) {
 if (isset($_SESSION['mailcow_cc_role']) && session_check() === false) {
-  exit("Invalid session");
+  session_regenerate_id(true);
+  session_unset();
+  session_destroy();
+  session_write_close();
+  header("Location: /");
 }
 }