XP client & Server authentication
From: Robin (robin.hartley_at_alcatel.co.nz)
Date: 05/25/05
- Next message: Duse: "Re: Dear Microsoft... Rebooting servers id NOT security.."
- Previous message: mocity: "best practices: builtin administrator account in AD"
- Next in thread: Steven L Umbach: "Re: XP client & Server authentication"
- Reply: Steven L Umbach: "Re: XP client & Server authentication"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 24 May 2005 21:20:34 -0700
Hi All,
I currently have XP running the L2TP/IPSec client to a network server.
I'm using X.509 certificates & can connect fine.
The issue I have is how to configure the XP client to check more than
just the signature on the server certificate.
I'm after something like what Cisco call "distinguished name checking"
where it will match fields in the certificate.
The problem is that over WiFi it's trivial to do a "man in the middle"
attack without verifying the server certificate. Any help appreciated.
Regards,
Robin
- Next message: Duse: "Re: Dear Microsoft... Rebooting servers id NOT security.."
- Previous message: mocity: "best practices: builtin administrator account in AD"
- Next in thread: Steven L Umbach: "Re: XP client & Server authentication"
- Reply: Steven L Umbach: "Re: XP client & Server authentication"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|