I have a login screen which I\'m serving over SSL. The user fills in their login/password, this gets POSTed to the server. At this point I want to jump out of SSL, so I re
The attack this is preventing against is a man-in-the-middle SSL session strip. The message is there with good cause.