Re: [perpass] Stopping password sniffing

"John Levine" <johnl@taugh.com> Sun, 17 November 2013 04:00 UTC

Return-Path: <prvs=002648b89a=johnl@iecc.com>
X-Original-To: perpass@ietfa.amsl.com
Delivered-To: perpass@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 72E0A11E8478 for <perpass@ietfa.amsl.com>; Sat, 16 Nov 2013 20:00:30 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NZJ8StW3bBaM for <perpass@ietfa.amsl.com>; Sat, 16 Nov 2013 20:00:21 -0800 (PST)
Received: from leila.iecc.com (leila6.iecc.com [IPv6:2001:470:1f07:1126:0:4c:6569:6c61]) by ietfa.amsl.com (Postfix) with ESMTP id 742F411E846A for <perpass@ietf.org>; Sat, 16 Nov 2013 20:00:20 -0800 (PST)
Received: (qmail 41251 invoked from network); 17 Nov 2013 04:00:19 -0000
Received: from leila.iecc.com (64.57.183.34) by mail1.iecc.com with QMQP; 17 Nov 2013 04:00:19 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding; s=52883f53.xn--i8sz2z.k1310; i=johnl@user.iecc.com; bh=5D2F780466rrO+WcYFp8U0N2OVI9lX1oexw+/2G9UPI=; b=pTsuo4KZm8Ts3tDPcW0bxr1/0ptsTAoCZXN2MjxPFI9Fu7VUxpJCHQZYS5SilMUk6WpvZA8UsfaQHx8zhm56Tc2wA2x0y+WCL6Sb6lLauWBpV5FC3xXVOqA/m3jb9D21jqqmjQvLyNpN0/uBSFMQRP09MzE8aBLIKq4ZLVK5rSgDy/+zO3QeFeGWtljJlUyIpK/UNiEe3aNjyApgAKyJOqnRE4TwOFs4U9Mz7+A2m1RVyqmhskhyXVSYjXfrXzcl
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding; s=52883f53.xn--i8sz2z.k1310; olt=johnl@user.iecc.com; bh=5D2F780466rrO+WcYFp8U0N2OVI9lX1oexw+/2G9UPI=; b=BryAW5N+OVZkyFf8vpy1D4SwAsG/cYt4QbkOvf9s0+rQhy733c9QXpVfmWlJu14a7B3ZLAlA4k7+zmC/XdmEKnYUWVkJLDPjy1/5OhH20wxcv816EY7EdwTWaffTh7yKf77M2jbN9XOcfarqmz+QbDxJ7r4NIpPZkJR6qyFKHpfn7JjgQdlQOBSbioKdv96Qrcn5Wfa66W+1qUB7dALPvRiTDKztppy9AYDAWwEaWteE423sXHQGQJ+cnWgSCfL5
Date: Sun, 17 Nov 2013 03:59:56 -0000
Message-ID: <20131117035956.72756.qmail@joyce.lan>
From: John Levine <johnl@taugh.com>
To: perpass@ietf.org
In-Reply-To: <01P0V5Q1Y3KK00004G@mauve.mrochek.com>
Organization:
X-Headerized: yes
Mime-Version: 1.0
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: 8bit
Cc: ned+perpass@mrochek.com
Subject: Re: [perpass] Stopping password sniffing
X-BeenThere: perpass@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "The perpass list is for IETF discussion of pervasive monitoring. " <perpass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/perpass>, <mailto:perpass-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/perpass>
List-Post: <mailto:perpass@ietf.org>
List-Help: <mailto:perpass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/perpass>, <mailto:perpass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 17 Nov 2013 04:00:35 -0000

>problematic - Apple's client reportedly doesn't support client certificates.
>Dunno about Android clients.

I poked around on my Android Nexus 7, don't see any way to install
client certs.