[10099] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: CFP: PKI research workshop

daemon@ATHENA.MIT.EDU (Michael Sierchio)
Sun Jan 13 21:25:22 2002

Message-ID: <3C408F13.C4BF01E9@tenebras.com>
Date: Sat, 12 Jan 2002 11:31:31 -0800
From: Michael Sierchio <kudzu@tenebras.com>
Reply-To: kudzu@tenebras.com
MIME-Version: 1.0
To: Carl Ellison <cme@acm.org>
Cc: "Perry E. Metzger" <perry@wasabisystems.com>,
	Phillip Hallam-Baker <hallam@ai.mit.edu>,
	SPKI Mailing List <spki@wasabisystems.com>,
	cryptography@wasabisystems.com
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit

Carl Ellison wrote:

> If that's not good enough for you, go to https://store.palm.com/
> where you have an SSL secured page.  SSL prevents a man in the middle
> attack, right?  This means your credit card info goes to Palm
> Computing, right?  Check the certificate.

To be fair,  most commercial CA's require evidence of "right to use"
a FQDN in an SSL server cert.  But your point is apt.



---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@wasabisystems.com

home help back first fref pref prev next nref lref last post