Re: CGI/1.0: last call
decoux@moulon.inra.fr (ts)
Date: Sun, 5 Dec 93 13:40:59 +0100
From: decoux@moulon.inra.fr (ts)
Message-id: <9312051240.AA15703@moulon.moulon.inra.fr>
To: luotonen@ptsun00.cern.ch
Subject: Re: CGI/1.0: last call
Cc: www-talk@nxoc01.cern.ch, robm@ncsa.uiuc.edu
> No. Password should be kept inside the server for security reasons.
> The environment variable REMOTE_USER is only defined if user has
> successfully authenticated himself. This should be enough.
>
>
I *need* a password to open an Oracle database, I don't want to write
a cracker to retrieve it from password file.
username:password can be send in stdin.
Guy Decoux