▲ | IgorPartola 4 days ago | ||||||||||||||||
Take a look at how basic auth is implemented in browsers today. Now imagine expanding it to (a) provide a much nicer and somewhat customizable UI for entering your credentials and (b) using proper encryption. | |||||||||||||||||
▲ | bvrmn 4 days ago | parent [-] | ||||||||||||||||
What about redirects from other sites, should Authorization behave like cookies? My point is cookies are ok for auth, and you basically should invent same things with another header. | |||||||||||||||||
|