|
|||||||||||
|
Re: Problems with most web app auth schemes
From: George W. Capehart <gwc(at)capehassoc.com>
Date: Mon Jul 28 2003 - 17:04:46 EDT -----BEGIN PGP SIGNED MESSAGE-----
On Sunday 27 July 2003 09:17 pm, Tim wrote: <snip> > The thing is, the vast majority of web applications do no
Hi Tim, This is a *very* good point. I totally missed it in your first post. I totally share your concern about this! > You do bring up a good point, that is, another poster in this
Which is what the CAs and RAs were supposed to solve . . . Not sure we're all the way there yet . . . ;-> >
I totally agree that using digital certs for authentication is a reasonable option . . . I personally like it much better than the usual zero- or single-factor schemes typically in use. Regards,
George
"With sufficient thrust, pigs fly just fine . . ."
Version: GnuPG v1.0.7 (GNU/Linux)
iD8DBQE/JY/3PhMbfSg3fpARAnItAJ9pcq+POC+hLXPqw3IuUxKxWxl4DwCgza19
Leqn3fGoA/POWTTA3GiCvLY=
This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:54 EDT |
||||||||||
|
|||||||||||