General SSL Question
From: Harry Simpson (hssimpson@nospamphgt.net)
Date: 06/27/02
- Next message: Ely Lucas: "Process Model"
- Previous message: M. Shawn Dillon: "Certificates and Cryptography (Please HELP!)"
- Next in thread: Greg Reinacker: "Re: General SSL Question"
- Reply: Greg Reinacker: "Re: General SSL Question"
- Reply: Michael Howard [MS]: "Re: General SSL Question"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "Harry Simpson" <hssimpson@nospamphgt.net> Date: Thu, 27 Jun 2002 09:46:24 -0500
Why would an intranet need SSL if the web app already depended on Windows
authentication. Should the company intranet firewall provide enough
security for aspnet apps?
Wouldn't SSL (HTTPS) really only be needed for anonymous internet
applications??
Also, If the application uses cookieless sessions, wouldn't using the https
absolute URLS cause the session to renew and screw up any session
variables.....
Ideas?
TIA
Harry
- Next message: Ely Lucas: "Process Model"
- Previous message: M. Shawn Dillon: "Certificates and Cryptography (Please HELP!)"
- Next in thread: Greg Reinacker: "Re: General SSL Question"
- Reply: Greg Reinacker: "Re: General SSL Question"
- Reply: Michael Howard [MS]: "Re: General SSL Question"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|