Re: Double authentication

"David Henry" <[email protected]>
Newsgroups gmane.network.nocat
Organization Nautical Landings LLC
Message-ID <002001c5bdd3$e667f950$6e01a8c0@an1x>
Hi,

I didn't see my post come through so I must not have replied all like I 
thought I did.

You can control logins via RADIUS.

Set Login Limit=1 and that will permit only one account to login.
If the user calls and says that they can't get in then you will know exactly 
what MAC address is using their password.  At that point you can do some 
layer 2 blocking or manage the problem by changing the user's password and 
kicking the other user.

HTH

- David


----- Original Message ----- 
From: "jonathan dopazo" <[email protected]>
To: <[email protected]>
Sent: Tuesday, September 20, 2005 6:29 AM
Subject: Re: [NoCat] Double authentication


> You can´t control who is going to steal users or passwords, that is 
> another part of security, that´s not software. I think that this is well 
> done.
>
>
>>From: ulrich schwarz <[email protected]>
>>CC: [email protected]
>>Subject: Re: [NoCat] Double authentication
>>Date: Tue, 20 Sep 2005 12:19:52 +0200
>>
>>Fabio Casadei wrote:
>>
>>...
>> > Everything seemed to work fine, until i noticed that two different
>> > clients, associated with the same account, can successfully log in at
>> > the same time. This sounds very bad because anyone can surf under false
>> > identity, if he can steal a valid username and password.
>>
>>hello fabio,
>>
>>multiple logins with the same username/passwd are allowed by design.
>>
>>but why should anyone be able to steal these things? and how?
>>
>>regards
>>
>>ulric
>>
>>_______________________________________________
>>NoCat mailing list
>>[email protected]
>>http://lists.nocat.net/mailman/listinfo/nocat
>
>
>
> _______________________________________________
> NoCat mailing list
> [email protected]
> http://lists.nocat.net/mailman/listinfo/nocat
>
>
> -- 
> No virus found in this incoming message.
> Checked by AVG Anti-Virus.
> Version: 7.0.344 / Virus Database: 267.11.3/106 - Release Date: 9/19/2005
>
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.