Re: Can encryrpted packets be cracked by middle man?

From: Colin Nash [MVP] (x_at_x)
Date: 10/06/05


Date: Thu, 6 Oct 2005 17:52:13 -0400


"Paul Kelly" <junk@example.com> wrote in message
news:2Tc1f.10277$4Q.3032@newsfe4-gui.ntli.net...
> At work we use two-factor authentication using RSA SecureID "keyfobs" in
> conjunction with Citrix Metaframe for remote access. They have a PIN
> number that changes every 60 seconds so you can log all they keystrokes
> you like, the last 6 will only ever be valid for a maximum of 60 seconds,
> often much less.
>

That certainly helps... it's certainly more of an enterprise solution. I'm
also thinking about whether the keystrokes/screenshots themselves would
reveal sensitive info (what the user typed, what is on the screen.) Again,
whether this is a big deal or not depends on the type of business one is in.



Relevant Pages