<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.01 Transitional//EN">
<html>
<head>
<meta content="text/html; charset=ISO-8859-15"
http-equiv="Content-Type">
</head>
<body text="#000000" bgcolor="#ffffff">
But why not allow multiple dropoffs for one auth request?<br>
After all, the point of the exercise is to prove they are who they say
they are. I see no great problem in caching that information to make it
easier for users who just want to press the back button and do another
one for someone else without going through the hassle of the
email+captcha for each dropoff.<br>
<br>
On 12/08/2010 11:32, Sergio Rabellino wrote:
<blockquote cite="mid:4C63CDCD.1000809@di.unito.it" type="cite">In
response to the problem of the reuse of an auth delivered to an
unauthenticatd user ( really the remote user can dropoff as that auth
as many times in the validity period), a possible solution can be a
copy of the auth key into the dropoff entry (table dropoff). If you
find that an entry in dropoff exists with that auth key, you can send
an error "no more than a dropoff for every authentication request".<br>
This can leave out also the repeated dropoff if you resend the post
data after a back-button press in the browser.<br>
<br>
What do you think about ?<br>
<div class="moz-signature">-- <br>
<center><span
style="font-family: Verdana,sans-serif; font-weight: bold;">
Ing. Sergio Rabellino<br>
</span>
<br>
<span style="font-family: Verdana,sans-serif;">
Universitą degli Studi di Torino<br>
Dipartimento di Informatica<br>
ICT Services Director<br>
Tel +39-0116706701
Fax +39-011751603<br>
C.so Svizzera , 185 - 10149 - Torino<br>
<br>
<a moz-do-not-send="true" href="http://www.di.unito.it"
alt="Dipartimento di Informatica"><img
src="cid:part1.02080104.06010509@ZendTo.com" border="0"></a>
</span></center>
</div>
<pre wrap="">
<fieldset class="mimeAttachmentHeader"></fieldset>
_______________________________________________
ZendTo mailing list
<a class="moz-txt-link-abbreviated" href="mailto:ZendTo@zendto.com">ZendTo@zendto.com</a>
<a class="moz-txt-link-freetext" href="http://mailman.ecs.soton.ac.uk/mailman/listinfo/zendto">http://mailman.ecs.soton.ac.uk/mailman/listinfo/zendto</a>
</pre>
</blockquote>
<br>
<pre class="moz-signature" cols="72">Jules
--
Julian Field MEng CITP CEng
<a class="moz-txt-link-abbreviated" href="http://www.ZendTo.com">www.ZendTo.com</a>
Need help fixing or optimising your systems?
Contact me!
Need help getting you started solving new requirements from your boss?
Contact me!
PGP footprint: EE81 D763 3DB0 0BFD E1DC 7222 11F6 5947 1415 B654
Follow me at twitter.com/JulesFM
</pre>
</body>
</html>