|
I
created a "remember me on this computer" option when the user logs
in, so when they come to the URL it automatically logs them into our site based
on the username and password I'm encrypting and storing in a shared object on
their machine. Works great. Out
of curiosity, I located that actual shared object file and emailed it to my
coworker and had him install it in the similar location on his machine and when
he went to the website, it automatically logged him in as me. Is
there any way to prevent this from happening? I mean, what additional security
could I add to prevent (if the user does, for whatever conceivable reason) the copying
of the .sol file from the one computer to another and it still work? I
figured there would have been some footprint on the .sol file (I thought that’s
what all those additional characters were in the .sol file when I opened it in
WordPad to look at it were) from my flash player, some unique id or something that
lets the .sol file only work with my flash player on my machine and not all
flash players...but I guess not...any thoughts? robert l. brueckmann vice president merlin securities p: 212.822.4821 This message contains information from Merlin Securities, LLC, or from one of its affiliates, that may be confidential and privileged. If you are not an intended recipient, please refrain from any disclosure, copying, distribution or use of this information and note that such actions are prohibited. If you have received this transmission in error, please notify the sender immediately by telephone or by replying to this transmission.
Merlin Securities, LLC is a registered broker-dealer. Services offered through Merlin Securities, LLC are not insured by the FDIC or any other Federal Government Agency, are not deposits of or guaranteed by Merlin Securities, LLC and may lose value. Nothing in this communication shall constitute a solicitation or recommendation to buy or sell a particular security.
-- Flexcoders Mailing List FAQ: http://groups.yahoo.com/group/flexcoders/files/flexcodersFAQ.txt Search Archives: http://www.mail-archive.com/flexcoders%40yahoogroups.com
SPONSORED LINKS
YAHOO! GROUPS LINKS
|
- [flexcoders] shared object security with flex 1.5 Robert Brueckmann
- RE: [flexcoders] shared object security with flex 1... Taka Kojima
- RE: [flexcoders] shared object security with flex 1... Robert Brueckmann
- RE: [flexcoders] shared object security with fl... Jason Hawryluk

