Phorm

Ian Batten ukcrypto at chiark.greenend.org.uk
Tue, 18 Mar 2008 14:30:03 +0000


On 18 Mar 08, at 1420, Ben Laurie wrote:

> Ian Batten wrote:
>> But of course sites use a zillion other authentication mechanisms.   
>> There's the ``remember me'' cookie mechanism, used because a lot of  
>> web browsers don't support saved passwords.
>
> Or perhaps because sending your password in plain text with every  
> request is the height of stupidity?

I suspect that wasn't the main driver, because cookie authentication  
is used for https'd connections too.

ian