[webkit-gtk] libwebkit2gtk and NTLM authentication

Gavin Lambert gavinl at compacsort.com
Fri Oct 18 00:22:15 PDT 2013


Quoth Carlos Garcia Campos:
> Good point, I actually thought about that, using a generic method that
> receives a WebKitAuthenticationScheme[0], but then I thought that some
> of the schemes should probably be always enabled, or is there any use
> case where it makes sense to disable basic and digest, for example?

The security-paranoid might want to disable basic, since it's little better than clear-text passwords.  (Although the security-paranoid shouldn't be sending passwords over anything but HTTPS anyway, so maybe it's moot.)




More information about the webkit-gtk mailing list