|
Posted by Jonathan N. Little on 11/27/05 03:40
Sparticus wrote:
> Hello,
>
> I was looking at websites such as hotmail.com. If you notice when you
> go to hotmail.com and try and log in, it isn't a "secure site". I did
> notice that the 'form action' is sent to a secure site (ie. https).
>
> How does that help? Just because you send the form data to a secure
> site, the data is still sent in plain text to the secure site....
> right?
>
> Can someone explain what I am missing? Thanx a ton,
Believe so, the form with user/password should be access with https AND
should post to https to encrypt the transmission. M$ *knows* security! ;-)
--
Take care,
Jonathan
-------------------
LITTLE WORKS STUDIO
http://www.LittleWorksStudio.com
Navigation:
[Reply to this message]
|