"Thomas Hansen" <(E-Mail Removed)> wrote in message
news:(E-Mail Removed)...
>> Guaranteed, definitely not.
>
> Sure, you just need to use cookie-less sessions... 
> (web.config)
That simply isn't true.
http://msdn2.microsoft.com/en-us/library/ms178582.aspx
Specifically, the paragraph entitled Regenerating Expired Session
Identifiers: "This behavior can result in the unwanted sharing of session
data when a link that contains a cookieless SessionID is shared with
multiple browsers, perhaps through a search engine or other program."