How is that? It at least has a level of obscurity. You would have to know that form vars are there in the first place to know what to grab...and then you would have to know the field names to address them. With a URL...it's all right there for the world to see. While it may not be Fort Knox level of security...it's better than absolutely nothing at all.
Eric -----Original Message----- From: Dave Watts [mailto:[EMAIL PROTECTED] Sent: Sunday, March 04, 2007 2:43 PM To: CF-Talk Subject: RE: Why does IE s*(k... let me count the ways. > Why would you want to pass that in the url? That is very > ugly and very unprofessional looking...not to mention > completely lacking any security. Form data is no more secure than URL parameters. Dave Watts, CTO, Fig Leaf Software http://www.figleaf.com/ Fig Leaf Software provides the highest caliber vendor-authorized instruction at our training centers in Washington DC, Atlanta, Chicago, Baltimore, Northern Virginia, or on-site at your location. Visit http://training.figleaf.com/ for more information! ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~| ColdFusion MX7 and Flex 2 Build sales & marketing dashboard RIAâs for your business. Upgrade now http://www.adobe.com/products/coldfusion/flex2 Archive: http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:271462 Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.4

