0x00
level: 0x04
0x01
code:
try {// TOMCAT 下將原 sessionId 賦值給新 request if (request instanceof org.apache.catalina.connector.RequestFacade) { java.lang.reflect.Field field = org.apache.catalina.connector.RequestFacade.class.getDeclaredField("request"); field.setAccessible(true); org.apache.catalina.connector.Request r = (org.apache.catalina.connector.Request) field.get(request); r.setRequestedSessionCookie(true); r.setRequestedSessionId(request.getSession().getId()); } } catch (Exception e) { e.printStackTrace(); }
0x02
PS: 感覺這樣子,吊爆了。這問題情況很復雜,這種方法對其他的項目不一定有效