• octavuslimited (7/22/2013)


    Hi Sean, you make a good point (though I do detect a little sarcasm in your tone perhaps?!). Actually, the server, user and password are all encrypted (RSA 1024bit) and the returned data will be encrypted with SSL which takes care of the www in general and none of that information is stored by the application (saved credentials are stored as local cookie). After that, yes, it's a question of do you trust the host, which is the same risk with any purveyor of web-based services?

    Please tell me you encrypt the contents of that cookie and not store it in plain text in the cookie.

    _______________________________________________________________

    Need help? Help us help you.

    Read the article at http://www.sqlservercentral.com/articles/Best+Practices/61537/ for best practices on asking questions.

    Need to split a string? Try Jeff Modens splitter http://www.sqlservercentral.com/articles/Tally+Table/72993/.

    Cross Tabs and Pivots, Part 1 – Converting Rows to Columns - http://www.sqlservercentral.com/articles/T-SQL/63681/
    Cross Tabs and Pivots, Part 2 - Dynamic Cross Tabs - http://www.sqlservercentral.com/articles/Crosstab/65048/
    Understanding and Using APPLY (Part 1) - http://www.sqlservercentral.com/articles/APPLY/69953/
    Understanding and Using APPLY (Part 2) - http://www.sqlservercentral.com/articles/APPLY/69954/