3 ms·
For fun: Why I Love Basic Auth: http://www.rdegges.com/why-i-love-basic-auth/ http://www.rdegges.com/why-i-love-basic-auth/
by mmcclellan 11y ago
For fun: Why I Love Basic Auth:
http://www.rdegges.com/why-i-love-basic-auth/ http://www.rdegges.com/why-i-love-basic-auth/
- jacquesm 11y agoThat's not user facing, and that's the subject here. In the user facing context the bigger problems are that 'basic authentication' did not support such niceties as logging out and sends the password in plaintext. So yes, it's easy to use and simple but so is a tri-cycle and I'd hate to have to make any miles on a tri-cycle.
- pbreit 11y agoBut how does the consumer get the credentials in the first place? That's the main or only purpose of Oauth!
- vonklaus 11y agoI like Simple Value. It was a concept that a lot of people have stopped using. You either allow a user to use your site without signing in, with extra value for them if they do OR just provide the value proposition up front so that they will be willing to sign in. Obviously, this won't work if you are hocking sluggish blogspam with less content than the titanic had lifeboats and enough javascript to track my cross atlantic voyage. Just make shit that doesn't suck and users will sign up if it is necessary. If there is no need to have users sign up don't have it. Super Simple Value. Build on Super Simple Auth ^TM.
- RickHull 11y agoThis earned a hearty chuckle. +1 Insightful to boot.
- seanp2k2 11y agoAuthentication and authorization are different concerns, and OAuth attempts to handle both in a secure manner. I love working with basic with too, but it's not a fair comparison.