Another reason not to change IdP hostnames

Paul Hethmon paul.hethmon at clareitysecurity.com
Mon Oct 3 12:41:56 EDT 2016


> On Oct 3, 2016, at 12:39 PM, Wessel, Keith <kwessel at illinois.edu> wrote:
> 
> Seems like a better solution for something as central as the IdP would be to mark the password field on your login page as not allowed to be saved.
> 
> Or are some browsers ignoring that mark-up these days?

All the browsers are ignoring it today.

You can fool them, but it takes some tricks.

Paul

Paul Hethmon
Chief Software Architect
paul.hethmon at clareitysecurity.com
865.250.3517



More information about the users mailing list