RE: [PHP] apache authentication
| From: | Jon Haworth | Date: | Thu, 17 Jan 2002 10:16:38 +0000 |
| Subject: | RE: [PHP] apache authentication | ||
| Groups: | php.general | ||
| Request: | Send a blank email to php-general+get-80891@lists.php.net to get a copy of this message | ||
> SECURITY WARNING: This code uses a hard-coded user-name and
> password, which begs the question of where they would come from
> in the real world. You could collect them via a form, but then
> they will be sent to the PHP script as arguments and so the
> password will be visible in the URL box of the browser window.
> (Any better suggestions?)
MD5 the password with javascript before submitting the form?
Works for me :-)
Cheers
Jon