| Lessons for Client/Server | |
- Verify IP origin
- Use logging
- Care with user configurable files
- Care with passwords
- Use handshaking
- Keep security layer simple
- Encrypt sensitive data
- Design protocol to allow security checks
- Ensure your protocol is allowed by security manager if crossing firewalls
- More likely to find UDP blocked than TCP
Slide 40 | ©Copyright 1997 | Jan Newmarch |