Martin Brooks wrote:
> Passwords are sent to Squid in plain text format. Soemone sniffing your
> local network could potentially intercept this. As I understand it, the
> password is not cached by Squid itself but is presented each time by the
> browser. This adds up to an increase in the amount of authenication your
> PDC(s)/BDC(s) will be doing.
Well, the password cached inside Squid (but not on disk) for the
duration of authenticate_ttl, to not overload the backend system with
password validations.
-- Henrik Nordstrom Squid hackerReceived on Wed Jul 05 2000 - 13:57:33 MDT
This archive was generated by hypermail pre-2.1.9 : Tue Dec 09 2003 - 16:54:21 MST