[prev in list] [next in list] [prev in thread] [next in thread] 

List:       owncloud
Subject:    Re: [Owncloud] Webdav Basic Authentication
From:       Mark Ziegler <mark.ziegler () rakekniven ! de>
Date:       2013-09-12 8:27:41
Message-ID: 52317AFD.6000408 () rakekniven ! de
[Download RAW message or body]

Am 12.09.2013 10:24, schrieb Matthias:
> Dear Group,
>
> I am not a webdav expert but I read on a microsoft website, that 
> microsoft disabled Basic Authentication for windows due to security 
> reasons of the Basic Authentication standard. I also read "The most 
> serious flaw in Basic authentication is that it results in the 
> essentially cleartext transmission of the user's password over the 
> physical network." on this website:
> http://www.webdav.org/specs/rfc2617.html#rfc.section.4.1
>
> If I get this right, it is not a good idea that owncloud only uses 
> this type of Authentication standard?
>
That's why we recommend SSL for your webserver.
_______________________________________________
Owncloud mailing list
Owncloud@kde.org
https://mail.kde.org/mailman/listinfo/owncloud
[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic