Search the web
Sign In
New User? Sign Up
student-ipv6 · Student IPv6 Awareness Group
? Already a member? Sign in to Yahoo!

Yahoo! Groups Tips

Did you know...
Want your group to be featured on the Yahoo! Groups website? Add a group photo to Flickr.

Best of Y! Groups

   Check them out and nominate your group.
Having problems with message search? Fill out this form to ensure your group is one of the first to be migrated to the new message search system.

Messages

  Messages Help
Advanced
Re: [IPv6] problem in socket programing for ipv6   Message List  
Reply | Forward Message #218 of 229 |
Re: [IPv6] doubts regarding client-server computing


Yes snooping the networking and picking up session ID is possible. There
are many ways to avoid this risk

1. Use SSL
2. Use a challenge-response meachanism
3. tie the session ID with the useragent/cookie so that even if someone
steals it, it wont work on his machine

- kalyan


On Sun, 3 Aug 2003, Hemant wrote:

> Hi ,
> I dunno if this was the right forum to post these
> questions.
>
> But here goes...
> In a web based application, lets say a client browser
> has logged in (using UserName and password) to a
> server application. So lets say the web server has
> assigned a sessionId to the client browser. Now, are
> there any programs (malicious ones) which snoop on
> connections between a client and server to look for
> such sessionId and use that to break into systems? Can
> this please be answered with some explanation.
>
> Can anyone please suggest some links of where i can
> find related info.
>
> Thanx,
> -hemant
>
>
> __________________________________
> Do you Yahoo!?
> Yahoo! SiteBuilder - Free, easy-to-use web site design software
> http://sitebuilder.yahoo.com
>
>
> ---------------------------------------
> This is the Students IPv6 mailing List.
>
>
> Your use of Yahoo! Groups is subject to http://docs.yahoo.com/info/terms/
>
>
>
>



Mon Aug 18, 2003 9:58 am

kalyan_va
Offline Offline
Send Email Send Email

Forward
Message #218 of 229 |
Expand Messages Author Sort by Date

... Hi geetha, I think you can refer this document for help. http://java.sun.com/j2se/1.4.1/docs/guide/net/ipv6_guide/ this will give you brief understanding...
vikram singh
singh_vishen
Offline Send Email
Apr 11, 2003
2:10 pm

... Hi geetha, I think you can refer this document for help. http://java.sun.com/j2se/1.4.1/docs/guide/net/ipv6_guide/ this will give you brief understanding...
vikram singh
singh_vishen
Offline Send Email
May 20, 2003
12:29 pm

... Hi geetha, I think you should look at this link to get help: http://java.sun.com/j2se/1.4.1/docs/guide/net/ipv6_guide/ This will give you brief idea about...
vikram singh
singh_vishen
Offline Send Email
May 20, 2003
12:29 pm

Hi , I dunno if this was the right forum to post these questions. But here goes... In a web based application, lets say a client browser has logged in (using...
Hemant
hemant_t3
Offline Send Email
Aug 3, 2003
6:04 pm

Yes snooping the networking and picking up session ID is possible. There are many ways to avoid this risk 1. Use SSL 2. Use a challenge-response meachanism 3....
Kalyan Varma
kalyan_va
Offline Send Email
Aug 18, 2003
10:04 am
Advanced

Copyright © 2009 Yahoo! Inc. All rights reserved.
Privacy Policy - Terms of Service - Guidelines - Help