Re: Web Tool Announcement: ismymailsecure.com

看板Bugtraq作者時間15年前 (2010/08/26 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串6/9 (看更多)
Hi Kari, On 25/08/2010 11:30, Kari Hurtta wrote: > And because mail server name and email address does not need to be any > connection also checking of signature of certificate agaist CA does not > help much. It does not protect attack agaist MX records on DNS. true - so in an ideal world, we would need DNSSec everywhere and strict certificate checking to significantly reduce the possibility of MiTM attacks. In a not so ideal world, every little bit helps, so if we can get mail servers to routinely use encryption between each other, that's a nice first step and using valid certificates that can actually be verified is a second one. Both will help significantly already. Holger
文章代碼(AID): #1CTLfWTE (Bugtraq)
討論串 (同標題文章)
文章代碼(AID): #1CTLfWTE (Bugtraq)