[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: Entry Authentication



-----BEGIN PGP SIGNED MESSAGE-----

On Wed, 20 Jan 1999, Daniel E. Markle wrote:

> On Tue, Jan 19, 1999 at 05:25:01PM -0800, Aaron D. Turner wrote:
> > occured to me, why don't we just use the basic HTTP authentication modules
> 
> I thought we discussed this before and discounted it, though I don't remember
> why.

If we did, I forgot.
 
> > 2) Is the userid accessable???  There will probably be other places in the
> > site where we will want to leverage this info.
> 
> I've been hunting this info myself to use and haven't found it yet.  The only
> way to get it as I can tell is to have the cgi/whatever actually ask the 
> browser itself.

That doesn't work.  Too many people put fake contact info (name, email) in
their browser config for security reasons.  Sounds like we'll need to do
the cookie thing.  At least Apache has a module (usertrack) that makes
this easier.


- -- 
Aaron Turner           | Either which way, one half dozen or another. 
aturner@pobox.com      | Check out the Red Hat Linux User's FAQ Online!
www.pobox.com/~aturner | http://www.pobox.com/~aturner/RedHat-FAQ/
All emails from this account are PGP signed.  Lack of a signature is "bad".
PGP Key fingerprint = FB E1 CE ED 57 E4 AB 80  59 6E 60 BF 45 1B 20 E8



-----BEGIN PGP SIGNATURE-----
Version: 2.6.2

iQCVAwUBNqYyJzM3jpXy1kJtAQFlOAP/en+GHnPqaRyn3zPgNuJtaVFzTbGFqUYP
GwGAZS2f5NTa1bN9n5+W7yYoCRNvZ2KGlYXSxo7qv16Iz1EudfqpZoxP0Rs6Vh4R
D55Eg5ewKEmouq6ibthbhekESqeK/PQttCz4frGOsCdzzGhj/CmaFvS2nGDkkzOn
Cc3tOJPxeJQ=
=TmzV
-----END PGP SIGNATURE-----