[50] in WWW Security List Archive

home help back first fref pref prev next nref lref last post

Re: GSS API...

daemon@ATHENA.MIT.EDU (Jan Hardenbergh)
Wed Aug 17 18:44:38 1994

From: Jan Hardenbergh <jch@nell.oki.com>
To: www-security <www-security@ns1.rutgers.edu>
Date: Wed, 17 Aug 94 15:28:00 E


So, a DLL-like solution is possible on almost all UNIX boxes, as long as it
is kept simple and the routines are called through pointers in a struct or 
table.
I know there are at least a few examples - "plugin" software is common 
enough
that we should be using the ... ? ... conventions.

If someone can place a file in the server's search path, then you have no 
security.

Encrypting files on the server - just storing them encrypted seems like a 
good idea.

The copyright problem is no different than software, or anything else. Let's 
not
make new problems.

The payment problem should move to www-buyinfo[-request]
http://www.research.att.com/announce-w-b.txt

YON, jch@oki.com, Jan C. Hardenbergh, OKI Advanced Products 508-460-8655
"Imagination is more important than knowledge" A. Einstein - thank the gods

home help back first fref pref prev next nref lref last post