To LUGNET HomepageTo LUGNET News HomepageTo LUGNET Guide Homepage
 Help on Searching
 
Post new message to lugnet.admin.generalOpen lugnet.admin.general in your NNTP NewsreaderTo LUGNET News Traffic PageSign In (Members)
 Administrative / General / 3649
3648  |  3650
Subject: 
Re: Enhanced verification (was: Re: What the F.......)
Newsgroups: 
lugnet.admin.general
Date: 
Tue, 14 Dec 1999 21:33:37 GMT
Viewed: 
76 times
  
On Tue, 14 Dec 1999 20:07:01 GMT, "Todd Lehman" <lehman@javanet.com>
wrote:
In lugnet.admin.general, Eric Kingsley writes:

Could something check Brad's IP to ensure that his combination of Name and
E-mail address are coming from a known LEGO IP?

Yes.  But that gets pretty restrictive.  Brad or other TLC employees couldn't
use dynamic IP from home then, if they ever wanted to check in at night on a
home dial-up modem system.

How about a bit of perl that checks for @lego.com, gets the IP, and
cross-references it with the RIPE whois database to make sure it is a
legitimate lego address? (ie, registered to the person who does the
registering for lego - which seems to be the same person for all)

It does prevent write access from home (assuming, of course, that LEGO
emplyees don't dial in to the corporate net one way or the other (VPN
or so)), but it's less restrictive than single-IP and less likely to
break.

Jasper



Message is in Reply To:
  Re: Enhanced verification (was: Re: What the F.......)
 
(...) It would allow Brad to say to the system, "Hey, don't let anyone post to the system using From: Brad Justus <legodirect@lego.com> unless it was actually Brad Justus (as verified by his ID & password). (...) No. (...) No, not unless you wanted (...) (25 years ago, 14-Dec-99, to lugnet.admin.general)

7 Messages in This Thread:


Entire Thread on One Page:
Nested:  All | Brief | Compact | Dots
Linear:  All | Brief | Compact
    

Custom Search

©2005 LUGNET. All rights reserved. - hosted by steinbruch.info GbR