RSS Security: Password Protection

As a developer, many times things are not as easy as they seem.....yeah, I'm used to that fact now.

For one of the projects I'm currently working on, I've decided I'd like to have an option to enable or disable auto-generated RSS feeds. I would like it if these feeds, when generated, were password protected.

So off I went looking for information on password protecting RSS feeds. Hmmm...not much out there on the subject. It seems that the idea of password protecting RSS feeds is still in it's infancy. So I thought before I spend more time looking for answers, I should define my question and requirements as specifically as possible. Here's what I came up with.

I want to be able to support password protection of my RSS feeds through the following authentication methods:

  • HTTP Basic
  • Integrated Windows (NTLM/Kerberos)
  • Digest

I also would like to be able to support users receiving different feed items based on a permissions/security model of some kind so that I could offer the ability to control who sees the RSS data at the item-level, not just the feed level.

Reading over the RSS 2.0 specification, I saw nothing related to security, so I assume that security implemented for the RSS feed is handled on one end by the web server handling the HTTP request for the RSS feed, and on the other end by the client requesting access to the RSS feed. The client should collect a user name and password, and put that information into the request to the server. I'm curious to know how (or if) sites like UserLand, or ASP.NET Weblogs offer password protected RSS feeds, and on the other side of the fence, how are RSS aggregators like NewsGator, NewzCrawler, SharpReader, etc. handling password protected RSS feeds?

11 Comments

  • отлично сделано, интеретсно читать 98)

  • This can be difficult or easy, depends on your architecture/what security you want - we are successfully implementing this with sharepoint feeds now but its a bit of a fudge-around!

  • The wealth of the mind is the only wealth.

    -----------------------------------

  • -----------------------------------------------------------
    "I completely agree while using over view, the planet vast internet is definitely with out a doubt rising in towards the major type of conversation close to the planet and it is because of to internet sites like this that ideas are spreading so swiftly."

  • -----------------------------------------------------------
    "This could be exactly the big difference regarding the important thing mainstream press and weblogs. The content material articles or blog posts are effectively printed and not corrected by an editor was. That may well be the explanation why I enjoy to lookup for data internet sites. The responses are typically incredibly unique, we could all use a lot extra satisfaction reading. Please go on like this, it is really worth."

  • "Google is wonderful, it's the heart of all the data! Laughing We are equipped to ask no matter we would like, and yahoo will answer them. Like proper now, I am searching, searching for entertainment and data, and at final discovered your posting. It give me what I looking for. Thanks a lot in your posts, this really is very useful."

    --------------------------------------------------------------------
    History of American Civilization

  • The guidelines you shared here are definitely beneficial. Rrt had been such a fun surprise to have that waiting for me right after i woke up this quite day. They're constantly to the point and straightforward to understand. Thanks a ton for the valuable ideas you have shared proper here.

  • Yes there should realize the reader to RSS my feed to RSS commentary, quite simply

  • A very good looking site and very informative too.

  • I’d check with you here. This is not one thing I usually do! I take pleasure in studying a submit that can make folks think. Additionally, thanks for allowing me to remark!

  • у девушки с чувством юмора могут быть враги?
    бесплатное видео анального изнасилования

Comments have been disabled for this content.