kevin ritter wrote:
> 
> Can anyone one verify if this is really the case, that is, to logout with
> BASIC authentication you have to close the browser window? This seems to be
> a little goofy. Are there any work arounds?

The troubles of revoking user credentials when using HTTP-authentication
is documented in the HTTP/1.1 specification (probably 1.0) under
http://www.w3.org/Protocols/rfc2616/rfc2616-sec15.html#sec15.6.

The only reliable way of logging out when you have been authenticated
(if using HTTP-authentication) is to close _all_ of your browser
windows.

-- 
Fredrik Westermarck

--
To unsubscribe:   <mailto:[EMAIL PROTECTED]>
For additional commands: <mailto:[EMAIL PROTECTED]>
Troubles with the list: <mailto:[EMAIL PROTECTED]>

Reply via email to