Skip to main content

Posts

Showing posts with the label external

Javascript: Redirect to external system and automatically authenticate SSL

Note: using basic authentication on external system. This leaves you open to XSS attacks SO TAKE NOTE, it is not for production code without modification. This little bit of javascript although insecure (but you can work with this) can give you single sign on like behaviour (if the site you are calling is using Basic Auth) using the XMLHttpRequest object. For the ADF stuff deployed on weblogic using the same realm this is not really a problem. function createRequest() {   if (typeof XMLHttpRequest != 'undefined') {     return new XMLHttpRequest();   }   try {     return new ActiveXObject("Msxml2.XMLHTTP");   }   catch (e) {     try {       return new ActiveXObject("Microsoft.XMLHTTP");     }     catch (e) {     }   }   return false; } function performRedirect() {   xmlhttp = createRequest();   xmlhttp.op...