Oleg Kalnichevski wrote:
 
>  I contend that preemptive authentication is conceptually flawed and poses
>  major security risks in the overwhelming majority of cases.

What is it that is conceptually flawed with using preemtive authentication,
when you with certainty know the http request that is about to be performed
always will require authentication?

And what are these major security risks involved in using preemtive
authentication against known and secured adresses?

-- 
Fredrik Jonson


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to