Re: Authenticating

From: Date: Tue, 02 Jan 2001 21:09:37 +0000
Subject: Re: Authenticating
References: 1 2  Groups: php.general 
Request: Send a blank email to php-general+get-32350@lists.php.net to get a copy of this message
Without the dialog, how would the browser know such information? Keep in mind that only an initial login is required; following the first popup box, you could store an encoded "session" id as a cookie... I'm sure I've seen snippets for this on zend.com or something... If your site is designed to be secure to any extent, I would _not_ suggest handling security through cookies, especially that store usernames/password in clear text or cookies that grant/deny access based on whether the cookie is set. (Just thought I'd throw in my 2/c...) Toby Butzon [ criticism spurs improvement ] ----- Original Message ----- From: "Jason" <jbeebe@op480.com> To: "Patrick Dunford" <pdunford.webs@clear.net.nz>; <php-general@lists.php.net> Sent: Sunday, December 31, 2000 4:07 PM Subject: Re: [PHP] Authenticating : you may want to just simply set a cookie on the users machine, so once they : log in once, it sets the cookie, so there is no need to log in again until : the cookie expires. : : ----- Original Message ----- : From: "Patrick Dunford" <pdunford.webs@clear.net.nz> : To: <php-general@lists.php.net> : Sent: Thursday, December 28, 2000 10:05 PM : Subject: [PHP] Authenticating : : : > Is it possible for a script to supply security information automatically : > when the browser pops up the window asking for a username and password? : > : > The browser does this when it gets asked for authentication. It collects : the : > information from the user and sends it back to the server. I want to be : able : > to send the information automatically without getting the popup dialog, : how : > easy is this? : > : > ======================================================================= : > Patrick Dunford, Christchurch, NZ - http://pdunford.godzone.net.nz/ : > : > Therefore, since we are receiving a kingdom that cannot be : > shaken, let us be thankful, and so worship God acceptably with : > reverence and awe, for our "God is a consuming fire." : > -- Hebrews 12:28-29 : > http://www.heartlight.org/cgi-shl/todaysverse.cgi?day=20001228 : > ======================================================================= : > Created by Mail2Sig - http://pdunford.godzone.net.nz/software/mail2sig/ : > : > : > -- : > PHP General Mailing List (http://www.php.net/) : > To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net : > For additional commands, e-mail: php-general-help@lists.php.net : > To contact the list administrators, e-mail: php-list-admin@lists.php.net : > : : : -- : PHP General Mailing List (http://www.php.net/) : To unsubscribe, e-mail: php-general-unsubscribe@lists.php.net : For additional commands, e-mail: php-general-help@lists.php.net : To contact the list administrators, e-mail: php-list-admin@lists.php.net : :

« previous php.general (#32350) next »