Re: basic realm
| From: | (Richard Lynch) | Date: | Sat, 08 Jul 2000 00:07:00 +0000 |
| Subject: | Re: basic realm | ||
| References: | 1 2 3 4 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-5489@lists.php.net to get a copy of this message | ||
In article <00b201bfe7ef$947419e0$0100a8c0@win98>, bmurphy@maximumhost.net
("B. Keith Murphy") wrote:
> I am working on a authentication procedure and I keep seeing reference to a
> "basic realm". My understanding is that it is a directory on the web server
> that the files in it are protected by the authentication scheme. So you
> would just dump the files you want to protect in that directory, and bingo
> you are done. Is that right?? And if so, am I right in assuming that that
> the directory is located in you "root" php directory??
My understanding of "realm" is rather different:
When you authenticate a user, you do so for a "realm", which is really
just a unique string to identify some portion of your web-site.
If you change the "realm", you force the user to re-authenticate for that
new realm.
I think this is cumulative: The user is now authenticated for both "realms".
While you generally connect a realm to a particular section of your site
by choosing a sub-directory of the site to match up with that realm, I
think it really only matters what headers go out about which realm they
are in.
Disclaimer: I'm not sure I have this all correct in my poor little head.
--
Richard Lynch | If this was worth $$$ to you, buy a CD
US Customer Support Director | from one of the artists listed here:
Zend Technologies USA | http://www.L-I-E.com/artists.htm
http://www.zend.com | (this has nothing to do with Zend,
duh!)