Point taken, but is there not just as much risk of the browser remembering the credentials? I could do without the remember me feature. If I were to strip that, could it be possible?
--------------- Added [DATE]1205332301[/DATE] at [TIME]1205332301[/TIME] ---------------
Plus from here on in, if you don't mind, let's only refer to the modcp. If a moderator does act as above, the worst that can happen to my knowledge is that their individual forum is corrupted.
--------------- Added [DATE]1205332414[/DATE] at [TIME]1205332414[/TIME] ---------------
And I should also, also add that this instance is behind a company firewall. So hopefully, there would be an element of trust involved if someone were to stumble across a machine in the above state.
--------------- Added [DATE]1205405412[/DATE] at [TIME]1205405412[/TIME] ---------------
Does anyone else have any thoughts on why we shouldn't have SSO between the main forum and the modcp if we're behind a firewall?
|