Re: Authentication using https

[prev] [thread] [next] [Date index for 2004/11/10]

From: Michael
Subject: Re: Authentication using https
Date: 21:28 on 10 Nov 2004
> All,
> 
> I'm about to replace the authentication mechanism that
> our web site uses. However I wanted to sanity check my
> thought process. 
> 
> Is it possible to have an Authen handler sitting on
> certain areas of a site, and if a user isn't logged in
> (i.e. doesn't have an auth session cookie) we present
> them with a form. (I can do this, but the next bit is
> new to me). Then when they send their details, i.e.
> username and password, they go over an SSL connection,
> which provided they are correct, then shows the page
> the user originally wanted? 
> 
> Basically I have a mechanism working that does this
> without the SSL, but can I update it to use an SSL
> connection for the login form submit?
> 
> Marty
> 

see Apache-AuthCookie

I believe everything you want is implemented in this package

        -- 
        Report problems: http://perl.apache.org/bugs/
Mail list info: http://perl.apache.org/maillist/modperl.html
List etiquette: http://perl.apache.org/maillist/email-etiquette.html

Authentication using https
Martin Moss 17:06 on 10 Nov 2004

Re: Authentication using https
Michael 21:28 on 10 Nov 2004

Re: Authentication using https
John Wittkoski 22:49 on 10 Nov 2004

Re: Authentication using https
Skylos 22:52 on 10 Nov 2004

Re: Authentication using https
Michael J Schout 05:20 on 11 Nov 2004

Re: Authentication using https
Martin Moss 11:08 on 11 Nov 2004

Re: Authentication using https
David Nicol 22:51 on 12 Nov 2004

Generated at 11:26 on 21 Dec 2004 by mariachi v0.52