Security Basics mailing list archives

Newbie HTTPS/SSL question


From: "Darragh O'Brien" <dobrien () computing dcu ie>
Date: Thu, 11 Dec 2003 13:21:51 +0000

Hi,

Is it possible to tie a web page to a particular HTTPS session
so that when requested it is always sent back encrypted with
the server key associated with that session? That way, guessing
the URL of a dynamically created page would not be enough
since we don't have the client key to decrypt it?

Or am I talking nonsense!?

Thanks,
Darragh

---------------------------------------------------------------------------
----------------------------------------------------------------------------


Current thread: