[lug] Security issue

Ken Weinert kenw at ihs.com
Thu Mar 22 13:38:47 MST 2001


http://www.microsoft.com/technet/security/bulletin/MS01-017.asp

This isn't really directly related to Linux, but it does speak to the
issues of security as related to digital signatures.

The upshot of the article is that VeriSign issued two certificates to
someone that said they were a Microsoft employee, but in reality they
were not. 

There's a lot of information about public/private keys, how they work,
etc. Also thought that those of you that deal with Microsoft platforms
might like a heads up if you haven't already seen the notification.

-- 
Ken Weinert   kenw at ihs.com 303-858-6956 (V) 303-705-4258 (F)
GnuPG KeyID: 9274F1CE           GnuPG available at http://www.gnupg.org/
GnuPG Key Fingerprint: 1D87 3720 BB77 4489 A928  79D6 F8EC DD76 9274 F1CE
C:\DOS   C:\DOS\RUN   RUN\DOS\RUN

-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 240 bytes
Desc: not available
URL: <http://lists.lug.boulder.co.us/pipermail/lug/attachments/20010322/aa1b88f3/attachment.pgp>


More information about the LUG mailing list