Skip to content

Comment on Using www-authenticate for user authenticationparent

Comments

A long time ago we had to work around disabled cookies by appending the session to every request URL... that was a fun time adding the session to all those <a href>...

But for the simple hashing it's an old RFC that I like to quote to HTTPS fools: https://datatracker.ietf.org/doc/html/rfc2289

Way better login than moving your whole site, including cat pictures, to encryption.

OMG, do you know how hard it was back in the early cHTML/WML/HDML days and dozens of different browsers?

Glad that was a temporary state of things.

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.