- View Full Site
- Forum Tools
- Firearm Resources
- Equipment Exchange
- Guns & Gear Deals
- Build Your Dream Rifle
- Shop AR15.COM
Posted: 11/18/2000 9:19:53 PM EDT
I try to run a tracert command from DOS and it gets blocked, do you have a new firewall on this sight?
This is the Ft.Knox of message boards. Every move is tracked, logged and scrutinized!
I'm sorry, this site is no Fort Knox kiddies. This place wouldn't even qualify as a tree fort until we get SSL. [:p]
We do not log on using SSL. That means that our passwords are transmitted in *plain* *text* to this site. Whoever might be running any kind of freeware sniffer, or the FBI's Carnivore for that matter can simply log our transmiss
ions of data (both passwords and posts/replys) in a human and machine readable format. I'm not saying we should wrap tin-foil around our modem-lines or anyhthing, just that we should be able to use SSL here.
Below, I will post [one of] the actual packet[s] of data sent to this site by my computer when I logged on.
I am going to replace my actual password (including the hex code for you smart-a$$es [;)]) with the word, "password." I also changed my login name to protect my privacy. The admins of this site can verify the validity of this packet by checking the packet header, it includes the MAC address of the interface that this packet was sent to me from.
11/29-13:03:48.046105 0:A0:CC:3C:EF:FB -> 0:A0:XX:52:XX:DD type:0x800 len:0xB
xxx.xxx.xxx.xxx:3432 -> 220.127.116.11:1111 TCP TTL:64 TOS:0x0 ID:10126 DF
*****PA* Seq: 0xB4B6D278 Ack: 0x986929CF Win: 0x4470
43 6F 6E 74 65 6E 74 2D 74 79 70 65 3A 20 61 70 Content-type: ap
70 6C 69 63 61 74 69 6F 6E 2F 78 2D 77 77 77 2D plication/x-www-
66 6F 72 6D 2D 75 72 6C 65 6E 63 6F 64 65 64 0D form-urlencoded.
0A 43 6F 6E 74 65 6E 74 2D 6C 65 6E 67 74 68 3A .Content-length:
20 35 37 0D 0A 0D 0A 75 4C 6F 67 69 6E 3D 64 69 57....uLogin=di
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 rt&uPassword=pas
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 sword23&Submit
2E 78 3D 32 30 26 53 75 62 6D 69 74 2E 79 3D 36 .x=20&Submit.y=6
I second Dirtbag's suggestion... Please impliment SSL.
The cost isn't that much, if you are still using M$ IIS it is [red]really[/red] easy.[;)]
Sign up for the ARFCOM weekly newsletter and be entered to win a free ARFCOM membership. One new winner* is announced every week!
You will receive an email every Friday morning featuring the latest chatter from the hottest topics, breaking news surrounding legislation, as well as exclusive deals only available to ARFCOM email subscribers.