How is that?  It at least has a level of obscurity.  You would have to know
that form vars are there in the first place to know what to grab...and then
you would have to know the field names to address them.  With a URL...it's
all right there for the world to see.  While it may not be Fort Knox level
of security...it's better than absolutely nothing at all.

Eric

-----Original Message-----
From: Dave Watts [mailto:[EMAIL PROTECTED] 
Sent: Sunday, March 04, 2007 2:43 PM
To: CF-Talk
Subject: RE: Why does IE s*(k... let me count the ways.

> Why would you want to pass that in the url?  That is very 
> ugly and very unprofessional looking...not to mention 
> completely lacking any security.

Form data is no more secure than URL parameters.

Dave Watts, CTO, Fig Leaf Software
http://www.figleaf.com/

Fig Leaf Software provides the highest caliber vendor-authorized
instruction at our training centers in Washington DC, Atlanta,
Chicago, Baltimore, Northern Virginia, or on-site at your location.
Visit http://training.figleaf.com/ for more information!




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~|
ColdFusion MX7 and Flex 2 
Build sales & marketing dashboard RIA’s for your business. Upgrade now
http://www.adobe.com/products/coldfusion/flex2

Archive: 
http://www.houseoffusion.com/groups/CF-Talk/message.cfm/messageid:271462
Subscription: http://www.houseoffusion.com/groups/CF-Talk/subscribe.cfm
Unsubscribe: http://www.houseoffusion.com/cf_lists/unsubscribe.cfm?user=89.70.4

Reply via email to