Re: Security Questions
| From: | Simon Edwards | Date: | Mon, 21 Aug 2000 00:02:04 +0000 |
| Subject: | Re: Security Questions | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-12694@lists.php.net to get a copy of this message | ||
Rasmus Lerdorf wrote:
> Well, they are base64 encoded, but that is as close to plaintext as you
> can get. Decoding it is trivial. Until more browsers start supporting
> digest auth, you are stuck with plaintext auth if you don't go to SSL.
:-) not quite true. PHPLIB basically does digest auth using an
javascript MD5 function in the browser. No plaintext is sent. As I said,
'clever'.
--
Simon Edwards
Animated Design, Melbourne
http://www.animated.net.au/ Ph: (03) 98850990