[Zope] why am I Anonymous

robert robert@redcor.ch
Sun, 22 Jun 2003 10:44:38 +0200


Thanks Jamie,
that explains things nicely.

have a nice sunday
Robert

Am Sonntag, 22. Juni 2003 10:11 schrieb Jamie Heilman:
> robert wrote:
> > Hi all,
> > I have installed Shanes VerboseSecurity.
> > I am logged in as user robert
> >
> > However VerboseSecurity reports as foolows
> >
> > Unauthorized: ...
>
> That is how HTTP works; first the request is sent anonymously, then if
> it is met with a 401 reponse it re-requests the resource with auth
> headers.  Sometimes browsers will send auth headers with the first
> request for all requests beneath a similar resource path, but that is
> not mandatory and if done blindly could lead to credential leaks.

=2D-=20
mit freundlichen Gr=FCssen

Robert Rottermann
www.redCOR.ch