Re: HTTP Authentication / Logging Out
| From: | Rasmus Lerdorf | Date: | Mon, 01 Oct 2001 22:36:37 +0000 |
| Subject: | Re: HTTP Authentication / Logging Out | ||
| References: | 1 | Groups: | php.general |
| Request: | Send a blank email to php-general+get-69503@lists.php.net to get a copy of this message | ||
$PHP_AUTH_USER is filled in based on the value coming from the browser.
unsetting it in PHP makes no sense as the browser is simply going to set
it again on the next request. There is no way to clear this from the
client-side short of changing the realm or denying the authentication with
a 403.
-Rasmus
On Mon, 1 Oct 2001, Eric J Schwinder wrote:
> I used a pretty basic system to check HTTP authentication values against
> database values, but I can't seem to find a way to allow the user to log
> out. I tried:
>
> unset($PHP_AUTH_USER)
>
> but Internet Explorer hangs on to that value until all browser windows are
> closed. Is there any way around that?
>
> Thanks,
>
> Eric J Schwinder
> eric.AT.bergencomputing.DOT.com
>
>
>
>