WebApp Sec mailing list archives

Re: Publishing Web Based Application via ICA protocol


From: jose.varghese () paladion net <jose.varghese () paladion net>
Date: Sat, 16 Jul 2005 11:05:20 +0575

Regarding the issue of sensitive documents getting cached at the client
machine , Andres Desa discusses this and more about secure document delivery
over Internet in the paper 
http://www.paladion.net/papers/Document_Security_in_Web_Applications.pdf.

Jose Varghese 
Paladion Networks
Application Security Magazine 
http://palisade.paladion.net




ail.com>
To: Justin Clarke <justin () justinclarke com>
Cc: webappsec () securityfocus com
Subject: Re: Publishing Web Based Application via ICA protocol


Are you concerned over files downloaded from the website (i.e. word/ 
excel documents in the applications, other stuff that can be 
downloaded), or pages containing sensitive information being cached? 
A standard measure for downloading content is to display a big 
warning saying don't download content from a public machine as it 
will be exposed. 


i mostly concerned about the word/xls/vsd/pdf files that users will 
d/l to view. They remain in cache. I need to find a way to 
automagically delete those files from the user's machine. 

-- 
In Peace, 
Saqib Ali 
http://www.xml-dev.com/blog/ 

  
 
Jose Varghese Paladion Networks Ph:91 22 55910513 Mobile: 98201 99818   
   



Jose Varghese
Paladion Networks
Ph:91 22 55910513
Mobile: 98201 99818




Current thread: