Hacker News new | ask | show | jobs
by nbpoole 4735 days ago
I believe that's how Rails works, except using an HMAC on the cookie instead of AES (since AES itself doesn't prevent tampering).