>> I would like to remind people that, contrary to widespread assumptions,
>> HTTP doesn't have "sessions".
>> Sessions are typically implemented by mistaking (groups of) connections
>> for a session, or by means of opaque unstandardized cookies.
>Why do you call cookies unstandardized?

Cookies are standardized just fine.

What I tried to say above is that we don't know which cookie
identifies the session.

