flask-digestauth/README.rst

97 lines
2.7 KiB
ReStructuredText
Raw Permalink Normal View History

2022-11-23 15:08:30 +08:00
================================
Flask HTTP Digest Authentication
================================
Description
===========
*Flask-DigestAuth* is an `HTTP Digest Authentication`_ implementation
for Flask_ applications. It authenticates the user for the protected
2022-11-24 17:57:25 +08:00
views.
2022-11-24 17:57:25 +08:00
HTTP Digest Authentication is specified in `RFC 2617`_.
Why HTTP Digest Authentication?
-------------------------------
2022-12-06 21:54:10 +08:00
*HTTP Digest Authentication* has the advantage that it does not send
thee actual password to the server, which greatly enhances the
security. It uses the challenge-response authentication scheme. The
client returns the response calculated from the challenge and the
password, but not the original password.
Log in forms has the advantage of freedom, in the senses of both the
visual design and the actual implementation. You may implement your
own challenge-response log in form, but then you are reinventing the
wheels. If a pretty log in form is not critical to your project, HTTP
Digest Authentication should be a good choice.
Flask-DigestAuth works with Flask-Login_. Log in protection can be
2022-11-24 17:57:25 +08:00
separated with the authentication mechanism. You can create protected
Flask modules without knowing the actual authentication mechanisms.
Installation
============
You can install Flask-DigestAuth with ``pip``:
::
pip install Flask-DigestAuth
2022-11-24 05:20:18 +08:00
You may also install the latest source from the
`Flask-DigestAuth GitHub repository`_.
::
pip install git+https://github.com/imacat/flask-digestauth.git
2022-12-06 21:54:10 +08:00
2023-04-23 22:43:56 +08:00
Documentation
=============
2023-04-23 22:43:56 +08:00
Refer to the `documentation on Read the Docs`_.
2023-04-23 22:43:56 +08:00
Change Log
==========
2023-04-23 22:43:56 +08:00
Refer to the `change log`_.
Copyright
=========
Copyright (c) 2022-2023 imacat.
Licensed under the Apache License, Version 2.0 (the "License");
you may not use this file except in compliance with the License.
You may obtain a copy of the License at
http://www.apache.org/licenses/LICENSE-2.0
Unless required by applicable law or agreed to in writing, software
distributed under the License is distributed on an "AS IS" BASIS,
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and
limitations under the License.
Authors
=======
| imacat
| imacat@mail.imacat.idv.tw
| 2022/11/23
2022-12-06 21:54:10 +08:00
.. _HTTP Digest Authentication: https://en.wikipedia.org/wiki/Digest_access_authentication
.. _RFC 2617: https://www.rfc-editor.org/rfc/rfc2617
.. _Flask: https://flask.palletsprojects.com
.. _Flask-DigestAuth GitHub repository: https://github.com/imacat/flask-digestauth
2022-12-06 21:54:10 +08:00
.. _Flask-Login: https://flask-login.readthedocs.io
2023-04-23 22:43:56 +08:00
.. _documentation on Read the Docs: https://flask-digestauth.readthedocs.io
.. _change log: https://flask-digestauth.readthedocs.io/en/latest/changelog.html