[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [dist-obj] Extranet security



Kevin Dick wrote:
> What if I attack the DNS connection from party2 clients or the DNS
> server at party1.

This is the key point.


> If this doesn't work, why involve DNS at all.  Provide a link from a
> trusted internal server on the party2 network using an IP address in the
> URL instead of a domain name (though you then have to worry about the DN
> in the server certificate if you're using SSL).

Don't use DNS, but do use domain names. Do it with host file
settings on the communicating nodes.

Albert

==========================================================================
To manage your subscription, mailto:dist-obj-help@distributedcoalition.org 
Archives, FAQ, etc.     http://www.distributedcoalition.org/mailing_lists/