Home page logo
/

fulldisclosure logo Full Disclosure mailing list archives

Re: [GOATSE SECURITY] Clench: Goatse's way to say "screw you" to certificate authorities
From: Andrew Auernheimer <gluttony () gmail com>
Date: Wed, 8 Sep 2010 13:53:28 -0500

This is no different then installing a client cert

Yes, exactly. This is as equally secure as installing a client cert.
Except it is achieved without a client cert, using only a password, in
a manner that can be more easily scaled to lots of users.



Trying to not sound like a dick,
dvs.



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]