[530] in cryptography@c2.net mail archive
Re: SSL weakness affecting links from pa
daemon@ATHENA.MIT.EDU (Amanda Walker)
Mon Apr 14 12:21:48 1997
Date: Mon, 14 Apr 1997 11:38:32 -0400 (EDT)
From: Amanda Walker <amanda@intercon.com>
To: cryptography@c2.net
What we did in our browser was to give the user a three-way preference for
the contents of the Referer: field. Off, on within a site (thus allowing
intra-site navigation for sites with CGIs that depend on it), and on
everywhere. I left mine set at the middle setting; I didn't mind a script
knowing where I came from within that site, but they didn't get to know
how I got there in the first place. This seemed to work pretty well.
Amanda Walker