On Tue, 11 Jul 2000, Paul D. Robertson wrote: > I'd look closely at two-factor (hard token-based) authentication or > challenge-response authentication. Both of those can solve not only the > insecurity issue, but the issues with malicious code presenting a > certificate when a luser isn't present. My recommendation also, for the same reasons. The other reason is that there is no way to ensure that a luser even puts a passphrase on their certificate database, or a good one for that matter. Then, a certificate without a passphrase is in many ways less secure than a good strong password (which you generally can check on the server-side). -Jason #include <std_disclaimer.h> -- AT&T Wireless Services IT Security UNIX Security Operations Specialist - [To unsubscribe, send mail to [EMAIL PROTECTED] with "unsubscribe firewalls" in the body of the message.]
- Re: secure webmail and firewall issues... Grant Vine
- RE: secure webmail and firewall issues... Jarmoc, Jeff
- RE: secure webmail and firewall issues... Eddy Kalem
- Re: secure webmail and firewall issues... Mikael Olsson
- Re: secure webmail and firewall issues... Brian Steele
- Re: secure webmail and firewall issues... Mikael Olsson
- Re: secure webmail and firewall issues... Alex Hague
- Re: secure webmail and firewall issues... Mikael Olsson
- Re: secure webmail and firewall issues... Brian J. Murrell
- Re: secure webmail and firewall issues... Paul D. Robertson
- Re: secure webmail and firewall issues... Jason Axley
- Re: secure webmail and firewall issues... Paul D. Robertson
- Re: secure webmail and firewall issues... Kostas Evangelinos
- Re: secure webmail and firewall issues... Jason Axley
- Re: secure webmail and firewall issues... Alex Hague
- Re: secure webmail and firewall issues... Mikael Olsson
- Re: secure webmail and firewall issues... Kostas Evangelinos
- Re: secure webmail and firewall issues... Alex Hague
- Re: secure webmail and firewall issues... Alex Hague
- RE: secure webmail and firewall issues... Ben Quinata
- Re: secure webmail and firewall issues... f . s . f
