SSL, client certs, and MITM (was WYTM?)
Anne & Lynn Wheeler
lynn at garlic.com
Thu Oct 23 11:43:04 EDT 2003
Internet groups starts anit-hacker initiative
http://www.computerweekly.com/articles/article.asp?liArticleID=125823&liArti
cleTypeID=1&liCategoryID=2&liChannelID=22&liFlavourID=1&sSearch=&nPage=1
one of the threats discussed in the above is the domain name ip-address
take-over mentioned previously
http://www.garlic.com/~lynn/aadsm15.htm#28
which was one of the primary justifications supposedly for SSL deployment
(am i really talking to the server that I think i'm talking to).
--
Anne & Lynn Wheeler http://www.garlic.com/~lynn/
Internet trivia 20th anv http://www.garlic.com/~lynn/rfcietff.htm
---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo at metzdowd.com
More information about the cryptography
mailing list