Archive for February, 2012

Is a Querystring encrypted when using HTTPS?

Synopsis: This is really the wrong question.  The question should be “Is an encrypted Querystring secure?” In a recent systems integration conference call, a third-party consultant wanted his application to pass us user credentials via Querystring arguments using SSL.  I commented that I usually don’t recommend doing this, and would prefer a POST to a […]

, , , , , ,

Leave a comment