  nil Java Geek join:2000-11-27
Host: Webmasters and Dev.. Forum Feature Requ..
| reply to Daniel Re: Banks Abandoning SSL On Home Page Log-Ins
That's a fair point 
I still say the real issue is the kind of information that is sent.. not how it's sent. All the security & keylogger issue could be made a lot less relevant with some brainstorming.. -- Life is too short to be boring |
|
 B Premium,MVM join:2000-10-28
| I hope you're right, nil , but I can't help thinking that this has been considered for years in the business world and the best we seem to have come up with is smart card tokens with synchronized time-based hashes. They're annoying. Fingerprint scanners have been shown in most cases to have laughable security. I don't know that there's an answer. (Though MS seems to feel differently.) I'm not ready to give up on userids and passwords.
I talked about a too-common little cert issue at »Eddie Bauer A major retailer went almost THREE WEEKS with an expired cert. Nobody cared. They still sold out of the Classic Fit Jeans.
-- B -- In a realm outside causality and function |
|