ws-users mailing list archives

Site index · List index
Message view « Date » · « Thread »
Top « Date » · « Thread »
From "Danny Angus" <danny.an...@gmail.com>
Subject Re: HTTP Authentication again
Date Tue, 09 May 2006 08:30:14 GMT
On 09/05/06, Schölver, Andreas <Andreas.Schoelver@ebootis.de> wrote:
> Is a clear text password really desirable or is it a security issue?

1/ use https - then it won't be visible on the network
2/ don't hard-code the password, make it a configurable parameter -
then only the user will know it.
3/ if security is a big concern do something more secure.

d.

Mime
View raw message