> 1. Given the server configuration, how can I get around the security sandbox 
> error when I make a https call?

Load the SWF itself through HTTPS.

> 2. How bad (or not) is the resulting security created by the 
> <allow-access-from domain="*"/>

Well, it allows any Flash program to request public URLs from your
server. But of course that's really the same thing that people can do
with browsers or any other HTTP clients - load public URLs from your
server. So it's more a matter of potentially abusive resource
consumption than anything else, I think.

Dave Watts, CTO, Fig Leaf Software
http://www.figleaf.com/
http://training.figleaf.com/

Fig Leaf Software is a Veteran-Owned Small Business (VOSB) on
GSA Schedule, and provides the highest caliber vendor-authorized
instruction at our training centers, online, or onsite.
_______________________________________________
Flashcoders mailing list
Flashcoders@chattyfig.figleaf.com
http://chattyfig.figleaf.com/mailman/listinfo/flashcoders

Reply via email to