Re: SSL/TLS - am I doing it right?
- From: Paul Rubin <http://phr.cx@xxxxxxxxxxxxxx>
- Date: 13 Mar 2006 02:55:02 -0800
"Frank Millman" <frank@xxxxxxxxxxxx> writes:
I was hoping to avoid this step. The point of the exercise for me is
encryption. I am not too worried about authentication. The next step in
my app is for the client to enter a user id and password, and the
server will not proceed without verifying this.
That is a total disaster without authentication, since it means the
client can reveal the password to an imposter.
.
- Follow-Ups:
- Re: SSL/TLS - am I doing it right?
- From: Frank Millman
- Re: SSL/TLS - am I doing it right?
- References:
- SSL/TLS - am I doing it right?
- From: Frank Millman
- Re: SSL/TLS - am I doing it right?
- From: Sybren Stuvel
- Re: SSL/TLS - am I doing it right?
- From: Frank Millman
- SSL/TLS - am I doing it right?
- Prev by Date: Re: Environmental Variables
- Next by Date: Re: SSL/TLS - am I doing it right?
- Previous by thread: Re: SSL/TLS - am I doing it right?
- Next by thread: Re: SSL/TLS - am I doing it right?
- Index(es):
Relevant Pages
|