Windows' authentication 'flaw' exposed in detail

Re: Well, Ain't that dandy!

Just, you can get a visa without a passport (Visa is a credit card, BTW - sometimes money help to get a visa, though...).

Authorization in Windows is much more complex - it relies on Active Directory, local security and objects ACLs... just, before being able to match a user agains the auth data, you need to ensure the user is authenticated.

