If you allow for aliases in DN-space, does't that require trust in the directory system? (the same trust you didn't want to require for the DN->822 mapping?) How do you defend against a directory spoofer who puts in an alias to "bad-guy" under the name of "good-guy" (by low level protocol packet hacking of a directory client like can be done with the DNS, not by changing the "real" directory data). How is this different? - Bill
<Prev in Thread] | Current Thread | [Next in Thread> |
---|---|---|
|
Previous by Date: | Re: Are DN's really names?, gvb |
---|---|
Next by Date: | Re: Unique DNs, Einar Stefferud |
Previous by Thread: | Re: Are DN's really names?, Steve Kent |
Next by Thread: | Re: Are DN's really names?, Steve Kent |
Indexes: | [Date] [Thread] [Top] [All Lists] |