private String generateSynId(){
return Long.toString(System.currentTimeMillis());
}
protected void saveSynId(HttpServletRequest request){
HttpSession session = request.getSession();
session.setAttribute(SYN_ID,generateSynId());
}
protected boolean compareSynId(HttpServletRequest request){
try{
HttpSession session = request.getSession();
String serverSynId = session.getAttribute(SYN_ID);
String clientSynId = request.getParameter(“CLIENT_SYN_ID”);
Return (serverSynId.equals(clientSynId));
}catch(Exception e){
return false;
}
}
|