Results 1 to 3 of 3

Thread: removing the script from the page

  1. #1
    Join Date
    Apr 2011

    removing the script from the page

    I don't know if it can be done in javascript. here is the scenario:

    i want to allow only legitimate clients to access my service thru javascript, loosely. I think i should issue a scurity token to each of them, so every access has a valid token within the http request. the request will then get a "session" token which will be attched to all the remaining calls for a certain period of time (and can be viewed). and the javascript code embeds the security token for the initial call will be removed thru obj.removechild() or like after the "session" token obtained. can it be done? is it a right way to do?


  2. #2
    Join Date
    Dec 2003
    Bucharest, ROMANIA
    JavaScript was not designed for access, user, passwords and things like that. As a client-side language, JavaScript code can not be hide, thus security is 0. I strongly advice you to use server-side methods to allow access to your site via a user/password/token, whichever.

  3. #3
    Join Date
    Apr 2011
    i understand that. but i can only embed javascript code in clients' html page. more ideas?

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts
HTML5 Development Center