Err, i sure hope your cookies are marked as "secure"...

On 10/2/08, Alan Burlison <[EMAIL PROTECTED]> wrote:
> Shawn Walker wrote:
>
>> In addition, to me, partially dismissing the concerns raised here by
>> suggesting that a user just use their browser instead to reduce login
>> frustration seems to simply move the real problem from one area to
>> another.
>
> It's more an acceptance of the fact that I can't stop people using the
> browser feature anyway ;-)  Plus cookies are sent on each request, login
> credentials are not, and login credentials will be supplied over SSL.
>
> --
> Alan Burlison
> --
> _______________________________________________
> website-discuss mailing list
> [email protected]
>

-- 
Sent from Gmail for mobile | mobile.google.com
_______________________________________________
website-discuss mailing list
[email protected]

Reply via email to