You read it incorrectly. We're changing IE so that passwords embedded in HTTP URLs won't be allowed. This puts us in compliance with 2616 and 1738 (and sucessor). > -----Original Message----- > From: ietf-http-wg-request@w3.org > [mailto:ietf-http-wg-request@w3.org] On Behalf Of Dave Kristol > Sent: Thursday, January 29, 2004 11:38 AM > To: HTTP Working Group > Subject: Microsoft to Strike IE URL Passwords > > > > > > <http://www.internetnews.com/dev-news/article.php/3305741> > > If I understand this article correctly, it sounds like MS IE > will remove support for Basic Authentication. While we all > agree that cleartext passwords are evil, this sounds to me > like it will create a major compatibility problem at sites > that use Basic. And note that it covers Basic over SSL, too, > where the passwords would *not* be cleartext. > > Dave Kristol > >
This archive was generated by hypermail 2.2.0+W3C-0.50 : Tuesday, 2 June 2009 18:22:11 GMT