ServerName Property

Dom formpost at hotmail.com
Tue Sep 4 13:34:39 EDT 2007


Andrew,

Please excuse my lack of understand here. 

So without a self aware client (property based server host) one compromised
service can exploit all services by forging the host name in the header. Correct?

Regards,

Dom




More information about the cas mailing list