Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Web Application Security
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: Is logoff feature necessary May 02 2006 08:06PM
Robert Hajime Lanning (robert lanning gmail com)
This depends. Are you using HTTP authentication, or do you have an
HTML form based
login with a session ID?

HTTP authentication has no "logout" capabilities. Every HTTP request
contains the
username and password in it. You must close the browser to have the
browser forget
the username/password.
...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus