[TYPO3-dev] secure?: https:// user:pw at website.tld

Kay Strobach typo3 at kay-strobach.de
Mon May 21 15:41:56 CEST 2012


Hi,

this uri can be logged in the browser visitlog ... so it's generally not
a good idea.

Regards
Kay

Am 21.05.2012 10:58, schrieb Michael:
> On 2012-05-21 18:49, Martin Bless wrote:
> 
>> Is it insecure to write https://user:pw@website.tld
>> in the browser? Comments and pointers welcome.
> 
> I would not do this in general. "user:pw" is not supported by all browsers
> and/or depends on the (security-) settings. So, it's not reliable (besides
> the question if it is secure or not :-)
> 
> Cheers
> Michael
> 


-- 
http://www.kay-strobach.de - Open Source Rocks

TYPO3 .... inspiring people to share!
Get involved: http://typo3.org

Answer was useful - feel free to donate:
  -
https://www.paypal.com/cgi-bin/webscr?cmd=_s-xclick&hosted_button_id=KPM9NAV73VDF2
  - https://flattr.com/profile/kaystrobach




More information about the TYPO3-dev mailing list