[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] HTTP AUTH BASIC monowall.
- To: Tim <tim-security@xxxxxxxxxxxxxxxxxxx>
- Subject: Re: [Full-disclosure] HTTP AUTH BASIC monowall.
- From: Jim Popovitch <jimpop@xxxxxxxxx>
- Date: Mon, 13 Mar 2006 15:29:00 -0500
Tim wrote:
Of course, if your users just click OK every time they see a
certificate warning box, then SSL is completely pointless.
Therein lies the answer. Swift and/or Lazy admins deserve what they get
for not paying attention to warning dialogs. It's a pain to view/verify
certificates (ahem...Linksys) but it's important.
-Jim P.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/