1 Reply Latest reply: May 19, 2010 3:12 AM by Libor Krzyžanek RSS

community.jboss.org forums mixed mode

Andrew Hamilton Newbie

It must have been reported already, but the new security improvements to these forums have missed the mark by leaving the content presentation in mixed mode.

Aside from being insecure because the session cookie/info is sent over the wire in teh clear for some assets, in IE8, you cannot turn off the mixed mode-warning dialog box ( or if you can I have been to lazy, and paranoid, to turn that warning off ).

 

Please consider finishing the great job you've done with these forums and make the entire comunication to the side to be on a secure channel.

 

Warm regards.