It is easy to develop some sort of trojan, that once installed and running at a particular machine, can use an active connection from the user's Outlook to the Exchange Server, to have free access to the user's mailbox. So, any form of strong authentication that could be used to enforce the security of access to the Exchange Server is useless, because an authenticated Outlook-Exchange session can be largely used by whatever process running on that machine.
_________________________________________________________________ List posting FAQ: http://www.swinc.com/resource/exch_faq.htm Archives: http://www.swynk.com/sitesearch/search.asp To unsubscribe: mailto:[EMAIL PROTECTED] Exchange List admin: [EMAIL PROTECTED]