If you allow for aliases in DN-space, does't that require trust in
the directory system? (the same trust you didn't want to require for
the DN->822 mapping?)
How do you defend against a directory spoofer who puts in an alias to
"bad-guy" under the name of "good-guy" (by low level protocol packet
hacking of a directory client like can be done with the DNS, not by
changing the "real" directory data).
How is this different?
- Bill
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Are DN's really names?, gvb |
|---|---|
| Next by Date: | Re: Unique DNs, Einar Stefferud |
| Previous by Thread: | Re: Are DN's really names?, Steve Kent |
| Next by Thread: | Re: Are DN's really names?, Steve Kent |
| Indexes: | [Date] [Thread] [Top] [All Lists] |