Jackson wrote:
Build your login page in FLASH.  The source is not available.  Unless they
know how you are authenticating - file or database - they have a long way to get in.

Even if you do it in flash, you'd have to ALSO encrypt the login with SSL, otherwise you can tcpdump the interface and see the HTTP sent to the server and get the variables that way


--
Michael O'Keefe                      |          [EMAIL PROTECTED]
Live on and Ride a 03 BMW F650GSDakar|          [EMAIL PROTECTED]      / |
I like less more or less less than   |Work:+1 858 845 3514        /  |
more. UNIX-live it,love it,fork() it |Fax :+1 858 845 2652       /_p_|
My views are MINE ALONE, blah, blah, |Home:+1 760 788 1296       \`O'|
blah, yackety yack - don't come back |Fax :+1 858                _/_\|_,

--
[email protected]
http://www.kernel-panic.org/cgi-bin/mailman/listinfo/kplug-newbie

Reply via email to