LWN.net Logo

If sensible authentication were used...

If sensible authentication were used...

Posted May 27, 2010 14:56 UTC (Thu) by TRS-80 (subscriber, #1804)
In reply to: If sensible authentication were used... by niner
Parent article: Redirecting browser tabs via "tabnabbing"

They actually added it back in 3.0 as part of the "Clear Private Data..." interface. Also, it is possible to end it from the server side, but it requires a fair bit of hackery. There are plenty of other reasons not to use HTTP auth however, including the inflexibility of the browser UI for providing options like "new user" and "forgot my password".


(Log in to post comments)

If sensible authentication were used...

Posted Jun 1, 2010 16:15 UTC (Tue) by epa (subscriber, #39769) [Link]

Agreed. It would need the browser makers to get together to define a basic common interface for web authentication, into which site makers could plug their 'new user' and password reminder pages. Once it's widely deployed, security-conscious sites might start to use it.

If sensible authentication were used...

Posted Jun 1, 2010 16:43 UTC (Tue) by TRS-80 (subscriber, #1804) [Link]

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds