[sldev] [Viewer Auth] Office hour high points.

Anders Arnholm Anders at Arnholm.se
Fri Oct 19 02:30:59 PDT 2007


On Wed, Oct 17, 2007 at 08:01:11PM -0500, Callum Lerwick wrote:
> On Wed, 2007-10-17 at 19:34 -0500, Argent Stonecutter wrote:
> > > Challenge-response is only used to make sure a secret doesn't cross  
> > > the network unencrypted.
> > 
> > Challenge-response is also used to make sure that the security token  
> > provided is not replayable.
> 
> Challenge-response also requires the server know the password plaintext.

There are some more challage responce possibilites with public keys,
that is also used, how ever with just password it's less usefull.

/ Balp


-- 
      o_   Anders Arnholm,               HiQ - Consultant
 o/  /\    anders at arnholm.nu             Phone  : +46-703-160969
/|_, \\    http://anders.arnholm.nu/     http://www.hiq.se
/
`
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://lists.secondlife.com/pipermail/sldev/attachments/20071019/cea20745/attachment.pgp


More information about the SLDev mailing list