On Sun, Nov 23, 2008 at 9:48 PM, Lucio Godoy <luciocfgodoy@xxxxxxxxxxx> wrote: > if the unscrupulous user cuts and pastes the above url, they can access the > content directly without any authentication. So you should disable unauthenticated access to these urls. Trying to restrict access by somehow hiding or obfuscating the URLs is not going to stop someone knowledgeable and determined. Krist -- krist.vanbesien@xxxxxxxxx krist@xxxxxxxxxxxxx Bremgarten b. Bern, Switzerland -- A: It reverses the normal flow of conversation. Q: What's wrong with top-posting? A: Top-posting. Q: What's the biggest scourge on plain text email discussions? --------------------------------------------------------------------- The official User-To-User support forum of the Apache HTTP Server Project. See <URL:http://httpd.apache.org/userslist.html> for more info. To unsubscribe, e-mail: users-unsubscribe@xxxxxxxxxxxxxxxx " from the digest: users-digest-unsubscribe@xxxxxxxxxxxxxxxx For additional commands, e-mail: users-help@xxxxxxxxxxxxxxxx