Has anyone developed a 'site key' style authentication method using CAS? I'm not sure what the exact name of this is, but something akin to what banks are doing now: 1. Ask for userid 2. Present a user-designated image from a library or a custom phrase, pulled from a database. 3. Ask for password. 4. Move them on to the web app. We recently had a new twist on a phishing scam that pulled down our exact CAS authentication screen that was sent to all our staff. It always seemed inevitable someone would do this. Thanks. Jameson Watkins Director, Internet Development University of Kansas Medical Center http://www.kumc.edu/ 913-588-7387
-- You are currently subscribed to [email protected] as: [email protected] To unsubscribe, change settings or access archives, see http://www.ja-sig.org/wiki/display/JSG/cas-user
