spoofing HTTP auth
| From: | David Knape | Date: | Tue, 26 Sep 2000 21:12:21 +0000 |
| Subject: | spoofing HTTP auth | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-17629@lists.php.net to get a copy of this message | ||
Okay, I've read all I could find on the archive regarding HTTP auth, and it
seems we can't separate the pop-up box from the authentication, because the
pop-up box is part of the client, correct? But, what if PHP is the client,
that is, using fopen to open a url that requires http auth? Can I somehow
send a user name and pass to that URL.
Here's the long version....
I have a portal that authenticates a user and pass by attempting a
connection to a Lotus Domino Server via POP3. This works. (Beautifully, I
might add.) This same user and pass is used to authenticate users
connecting to other Notes resources on the same server. However, if I link
to the nsf files directly I get pop-up boxes. This is one problem I'd like
to solve by somehow authenticating in the background maybe? Other issue is
that there are notes resources such as calendars and todo lists that I can
get and use but directly in the portal, but again, only if the user has been
authenticated.
Any suggestions, hints, or sympathy is welcome...
Oh yeah, I already tried the don't use Notes method. Got that, thanks....
-David
David Knape
Web Application / Multimedia Developer
dave@tkdave.com