From e1b77238171cc96f4451a06fb4682e2378896238 Mon Sep 17 00:00:00 2001 From: Baptiste Mispelon Date: Wed, 2 Oct 2013 16:41:04 +0200 Subject: Changed the doc to use gender-neutral pronouns when possible. --- docs/topics/http/sessions.txt | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'docs/topics/http') diff --git a/docs/topics/http/sessions.txt b/docs/topics/http/sessions.txt index b336bf4669..c514978f57 100644 --- a/docs/topics/http/sessions.txt +++ b/docs/topics/http/sessions.txt @@ -166,7 +166,7 @@ and the :setting:`SECRET_KEY` setting. cookie backend might open you up to `replay attacks`_. Unlike other session backends which keep a server-side record of each session and invalidate it when a user logs out, cookie-based sessions are not invalidated when a user - logs out. Thus if an attacker steals a user's cookie, he can use that + logs out. Thus if an attacker steals a user's cookie, he or she can use that cookie to login as that user even if the user logs out. Cookies will only be detected as 'stale' if they are older than your :setting:`SESSION_COOKIE_AGE`. -- cgit v1.3