Has anyone developed a 'site key' style authentication method using CAS? I'm 
not sure what the exact name of this is, but something akin to what banks are 
doing now:
 
1. Ask for userid
2. Present a user-designated image from a library or a custom phrase, pulled 
from a database.
3. Ask for password.
4. Move them on to the web app.
 
We recently had a new twist on a phishing scam that pulled down our exact CAS 
authentication screen that was sent to all our staff. It always seemed 
inevitable someone would do this.
 
Thanks.
 
 
 
 
Jameson Watkins
Director, Internet Development
University of Kansas Medical Center
http://www.kumc.edu/
913-588-7387

-- 
You are currently subscribed to [email protected] as: 
[email protected]
To unsubscribe, change settings or access archives, see 
http://www.ja-sig.org/wiki/display/JSG/cas-user

Reply via email to