Posted by NotGiven on 11/05/96 11:33
Researching methodolgies where I open up an web site to different companies
without having to manage the user ID and password for every person in every
company.
Thoughts include:
1--create a different certificate (like SSL or Apache generated cert) for
each new company then log them in based on that. Refuse all users except
those that have a cert.
2--somehow integrate with company network login system
3--check users' referrer domain to verify company - easily spoofed?
Other ideas?
Navigation:
[Reply to this message]
|