note 2812 deleted from features.http-auth by alindeman
| From: | alindeman@php.net | Date: | Sat, 05 Jul 2003 17:53:17 +0000 |
| Subject: | note 2812 deleted from features.http-auth by alindeman | ||
| References: | 1 | Groups: | php.notes |
| Request: | Send a blank email to php-notes+get-51560@lists.php.net to get a copy of this message | ||
Note Submitter: auke@muze.nl
----
Someone gave me a simple solution to the 'logout' problem: add some sort of timestamp to
the basic realm you send in the WWW_Authenticate header. Mine now is: $realm="RealmName (
".strftime("%c",time())." )";. (btw: the problem was: 1) IE4 asks for the
page one more time after a 401, defeating sending a 401 once to force a user to log on again. and 2)
IE4 remembers the password, and puts it default in the logon window. Changing the realm solves these
problems, not the 'logon failed' message of NS though).