On 3/30/06, Cyrille Bonnet <[EMAIL PROTECTED]> wrote: > Now, just to push the problem a bit further: ideally, I'd like to put > SSL just on the login form. Zope would authenticate the user in that > request and return a "session ID" that would then be passed back and > forth in each request (without SSL).
I'd recommend the Yale CAS system. It does exactly this. I wrote a plugin for PAS for it, and I think I have some Cookie.Crumbler type thingy somewhere too. _______________________________________________ Zope maillist - Zope@zope.org http://mail.zope.org/mailman/listinfo/zope ** No cross posts or HTML encoding! ** (Related lists - http://mail.zope.org/mailman/listinfo/zope-announce http://mail.zope.org/mailman/listinfo/zope-dev )