
8 Oct
2007
8 Oct
'07
8:17 p.m.
Good point, and my mistake. I changes that in the spec. Thanks, Andre. Quoting [Ceriel Jacobs] (Oct 08 2007):
Hi Andre,
now that the URL specs are in the repository, I have a question about it: why are there separate methods for "username" and "password"? rfc2396 mostly talks about a "userinfo" token, with the user:password possibility made scheme-specific. In fact, the rfc2396 text warns against having passwords in there, because of the security risk. So, I would prefer set_userinfo/get_userinfo methods instead of the get_[username|password]/set_[username|password].
Ceriel
-- No trees were destroyed in the sending of this message, however, a significant number of electrons were terribly inconvenienced.