I inherited a site which bases the current logged in user via the Windows NTFS security login (via CGI.Auth_User) and utilizes Fusebox (quite poorly I might add). Unfortunately, every time there is a call using a reference with "../" (dot, dot, slash) it pops open a password box, (even though all the user has to do is hit ENTER, it gets rather annoying) . Are there any settings in IIS or default Windows Security I can use in order to eliminate this problem?
Thank you. John Kivus FAQ: http://www.thenetprofits.co.uk/coldfusion/faq Archives: http://www.mail-archive.com/cf-talk@houseoffusion.com/ Unsubscribe: http://www.houseoffusion.com/index.cfm?sidebar=lists

