<?xml version="1.0" encoding="utf-8" ?>
<?xml-stylesheet type="text/xsl" href="RSS_xslt_style.asp" version="1.0" ?>
<rss version="2.0" xmlns:WebWizForums="http://syndication.webwiz.co.uk/rss_namespace/">
 <channel>
  <title>DevForce Community Forum : Security/Authentication</title>
  <link>http://www.ideablade.com/forum/</link>
  <description>This is an XML content feed of; DevForce Community Forum : Community Forum : Security/Authentication</description>
  <pubDate>Fri, 10 Apr 2026 19:15:23 -700</pubDate>
  <lastBuildDate>Sat, 17 Nov 2012 08:59:25 -700</lastBuildDate>
  <docs>http://blogs.law.harvard.edu/tech/rss</docs>
  <generator>Web Wiz Forums 9.69</generator>
  <ttl>360</ttl>
  <WebWizForums:feedURL>www.ideablade.com/forum/RSS_post_feed.asp?TID=3775</WebWizForums:feedURL>
  <image>
   <title>DevForce Community Forum</title>
   <url>http://www.ideablade.com/forum/forum_images/IdeaBlade_logo_tm.png</url>
   <link>http://www.ideablade.com/forum/</link>
  </image>
  <item>
   <title>Security/Authentication : Hi,i have not tried it, will do...</title>
   <link>http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15234#15234</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="http://www.ideablade.com/forum/member_profile.asp?PF=1559" rel="nofollow">SirSmackalot</a><br /><strong>Subject:</strong> 3775<br /><strong>Posted:</strong> 17-Nov-2012 at 8:59am<br /><br />Hi,<br><br>i have not tried it, will do so next week. Here ist something which might be useful:<br><br>http://stackoverflow.com/questions/11476883/web-api-and-validateantiforgerytoken <br>and<br>(followup of the previous link)<br>http://stackoverflow.com/questions/11725988/problems-implementing-validatingantiforgerytoken-attribute-for-web-api-with-mvc/11726560#11726560<br><br>This way the .NET AntiforgeryToken could be used. Maybe someone finds that useful.<br><br>With the plugable header this is possible :)<br><br>Greets<br>]]>
   </description>
   <pubDate>Sat, 17 Nov 2012 08:59:25 -700</pubDate>
   <guid isPermaLink="true">http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15234#15234</guid>
  </item> 
  <item>
   <title>Security/Authentication : It been awhile since you posted...</title>
   <link>http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15204#15204</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="http://www.ideablade.com/forum/member_profile.asp?PF=1524" rel="nofollow">jtraband</a><br /><strong>Subject:</strong> 3775<br /><strong>Posted:</strong> 14-Nov-2012 at 7:29pm<br /><br />It been awhile since you posted this, but take a look at our new pluggable ajax support in v 0.70.1.&nbsp; Please let us know if this does or doesn't handle your issues.&nbsp;]]>
   </description>
   <pubDate>Wed, 14 Nov 2012 19:29:34 -700</pubDate>
   <guid isPermaLink="true">http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15204#15204</guid>
  </item> 
  <item>
   <title>Security/Authentication : Hello,maybe i missed something,...</title>
   <link>http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15135#15135</link>
   <description>
    <![CDATA[<strong>Author:</strong> <a href="http://www.ideablade.com/forum/member_profile.asp?PF=1559" rel="nofollow">SirSmackalot</a><br /><strong>Subject:</strong> 3775<br /><strong>Posted:</strong> 07-Nov-2012 at 3:34pm<br /><br />Hello,<br><br>maybe i missed something, but what can be done do secure a breeze.js application, especially not exposing the Web API without any authorization. <br>For example using the AntiForgeryToken is not possible because breeze encapsulates all the ajax calls. So no extra header could be used.<br><br>Greetings<br><br><br>]]>
   </description>
   <pubDate>Wed, 07 Nov 2012 15:34:45 -700</pubDate>
   <guid isPermaLink="true">http://www.ideablade.com/forum/forum_posts.asp?TID=3775&amp;PID=15135#15135</guid>
  </item> 
 </channel>
</rss>