[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
--
[Date Index]
| [Thread Index]
Re: [xml-dev] RE: Encoding charset of HTTP Basic Authentication
- From: Petite Abeille <petite.abeille@gmail.com>
- To: xml-dev <xml-dev@lists.xml.org>
- Date: Mon, 30 Jan 2012 15:17:35 +0100
On Jan 30, 2012, at 2:52 PM, Pete Cordell wrote:
> A quick question before I do though, does Digest require the server to have access to the password in clear text form, whereas Basic allows the server to store the password in some hashed form?
That's the crux of it: digest is not worth the complications IMO.
If you care about the integrity of the transport channel, use TLS.
If you use TLS, basic is all what you need.
[Date Prev]
| [Thread Prev]
| [Thread Next]
| [Date Next]
--
[Date Index]
| [Thread Index]