|
Posted by -{ Rene Brehmer }- on 06/21/05 01:52
I don't see any way of doing such a thing, without also seeing how easily
it would be to fake it.
I'm not really sure what it is you want to achieve. As a webmaster you
can't really take responsibility for the clients using insecure software to
access your website.
It is technically possible to use custom browsers, combined with personal
encryption chipcards, that allow only a specific person to establish an
encrypted connection to the server, and nothing else. And then refuse
connections made by other means. But that method is illegal in the US
because the CIA/NSA/FBI and so on can't "listen in" on the connection, and
as such it's a violation of the weapons/terror laws...
There is no way of ensuring a truly secure connection over an open network
without taking some drastic measures and have each site use their own
specific encryption algorithms with corrosponding clients...
Rene
Documented research indicate that on Mon, 20 Jun 2005 11:13:52 -0700,
"bruce" wrote:
> jason...
>
> it's the 2nd point... the hacked app that i'm concerned/thinking about...
>
> as i stated, a secure app/system incorporates not just the system, and the
> wire, it also deals with the client app that's being used.
>
> and in fact, i'm of the belief that the manufacturers/developers of a given
> app could in fact provide some function on their servers that you could
> check against to verify that the browser/app in question is indeed
> legitimate...
>
> as to the details, i'm not exactly sure how it could be accomplished, but
> i'm pretty sure it could be done...
>
> i'm not trying to stop someone from copying an app... i just want to know
> that the version of IE that i'm talking to is indeed a good/not hacked
> copy...
>
> -bruce
Navigation:
[Reply to this message]
|