01-25-05 07:50 AM
Currently we are SSLing the whole CMS read/write site, but we are suffering
for the slow performance. We decide to use SSL only for the logon page and
after being authenticated, the users will be using HTTP again.
1. Would this be a secured practice? Protecting only username and password
is necessary.
2. How can I enable users to use SSL only during the logon page? If this is
possible to be accepted by the authenticated cookie created by CMS?
Thanks a lot.
Po-San.
[ Post a follow-up to this message ]
|