in reply to SOAP::Lite - securest authentication route...

Keep in mind that MAC addresses will only be available for machines on the same physical network segment as you, so unless this is just intended for use on a single LAN that'd be heading down the wrong track.

A much better solution would be to use SSL/TLS certificates to strongly authenticate clients.

Update: Also note that it's not impossible to spoof another host's MAC given the right OS and a cooperative NIC. Granted they'd have to knock the real host off the network or it'd probably send packets with RST set when it sees traffic for TCP connections it knows nothing about, but traffic from a given MAC doesn't guarantee it's from that NIC.

  • Comment on Re: SOAP::Lite - securest authentication route...

Replies are listed 'Best First'.
Re: SOAP::Lite - securest authentication route...
by cLive ;-) (Prior) on Apr 20, 2004 at 01:52 UTC
    Good point. Most clients will be on the same physical network segment, but some will not be. Hmmmm. /me goes off to read up on coding SSL certificate authentication...

    cLive ;-)