Quantcast
Channel: Why doesn't form based authentication use digest instead of plain text - Information Security Stack Exchange
Browsing latest articles
Browse All 3 View Live

Answer by Steffen Ullrich for Why doesn't form based authentication use...

Why doesn't the form based authentication on web browsers use the digest scheme instead?A HTML form by itself is no form of authentication at all but it simply is collecting data entered by the user...

View Article


Answer by rustyx for Why doesn't form based authentication use digest instead...

is it so the digest challenge wouldn't provide any additional security over the form based authentication?It's actually the other way around: HTTP digest auth requires the server to store all passwords...

View Article


Why doesn't form based authentication use digest instead of plain text

In form based authentication the credentials are sent as such within the message, whereas in digest based authentication a digest of credentials, domain name and a random challenge is sent instead....

View Article
Browsing latest articles
Browse All 3 View Live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>