Basic authentication is secure enough if you use HTTPS. With plain HTPP the 
password is encoded with base64 which only slightly better than plain text 
(security by obfuscation).

A stronger algorithm is client certificates.

View the original post : 
http://www.jboss.org/index.html?module=bb&op=viewtopic&p=3859730#3859730

Reply to the post : 
http://www.jboss.org/index.html?module=bb&op=posting&mode=reply&p=3859730


-------------------------------------------------------
SF email is sponsored by - The IT Product Guide
Read honest & candid reviews on hundreds of IT Products from real users.
Discover which products truly live up to the hype. Start reading now. 
http://productguide.itmanagersjournal.com/
_______________________________________________
JBoss-Development mailing list
JBoss-Development@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/jboss-development

Reply via email to