Go Back   DefensiveCarry Concealed Carry Forum > DefensiveCarry.com Forum Office > Forum News, Feedback, Problems & Comments
Register Forum Rules FAQ Members List Calendar Mark Forums Read
Forum Donations DefensiveCarry Store DefensiveCarry Gallery USGO Gallery Related Links Forum Help & Extras

Forum News, Feedback, Problems & Comments Tell us what you like, and dislike or problems you are experiencing with the forum here.

Closed Thread
 
Thread Tools Display Modes
Old September 3rd, 2008, 07:17 PM   #1
New Member
 
Rick N's Avatar
 
Join Date: Aug 2008
Location: Salt Lake City, UT
Posts: 11
Rick N
SSL/secure login?

I'd really love it if defensivecarry.com would implement https, so I could log in and view the forum over an encrypted, secure connection. Currently, authentication is occurring over an unsecured connection, so:
  • someone using an unsecured, public Wifi connection (e.g. at a coffee shop) could have their password snatched right out of the air
  • someone using an anonymity network such as Tor could be vulnerable to exit node eavesdropping
  • pretty much any connection could be vulnerable to a man-in-the-middle attack

Just a suggestion!
__________________
"We have it in our power to begin the world over again." - Thomas Paine

My public PGP key
Rick N is offline  
Old September 3rd, 2008, 09:11 PM   #2
VIP Member
 
JonInNY's Avatar
 
Join Date: Jan 2008
Location: Mid-Hudson Valley New York State
Posts: 2,525
JonInNY is a forum contributor
Just my opinion back, but it might be overkill to security enable DC.com. This is not a "high-security" site. There are no financial transactions, or any other high risk transmissions, other than occasional rants and political posts.

I would recommend that you just use a simple, "throw away" password, that you are not using for any other site login anywhere else.

Also, security certificates cost money, and since this is a free site (except for the great volunteer site supporters), it might be a burdensome expense to the administrator.

Anyway, that's my 2¢.
__________________
  • "The right of voting for representatives is the primary right by which all other rights are protected."
    -- Thomas Paine
____________________________
  • Quis custodiet ipsos custodes? (Who will guard the guards?)
    -- Juvenal
JonInNY is offline  
Old September 4th, 2008, 01:47 AM   #3
VIP Member
 
retsupt99's Avatar
 
Join Date: Jul 2006
Location: Central Florida
Posts: 14,643
retsupt99 is a forum contributor
Quote:
Originally Posted by JonInNY View Post
Just my opinion back, but it might be overkill to security enable DC.com. This is not a "high-security" site. There are no financial transactions, or any other high risk transmissions, other than occasional rants and political posts.

I would recommend that you just use a simple, "throw away" password, that you are not using for any other site login anywhere else.

Also, security certificates cost money, and since this is a free site (except for the great volunteer site supporters), it might be a burdensome expense to the administrator.

Anyway, that's my 2¢.
I would say that this DC forum IS a financially risky site...every time I see another nice gun, I think about how I might buy it!
__________________
"That I cannot do."

"Give this to, uh, Clemenza. I want reliable people, people who aren't going to be carried away. After all we're not murderers in spite of what this undertaker thinks."


***********************************

NRA Life Member
retsupt99 is online now  
Old September 4th, 2008, 04:41 AM   #4
Administrator
 
Bumper's Avatar
 
Join Date: Jun 2004
Location: Arizona
Posts: 14,054
Bumper is a forum contributor
While I agree that many sites need to be secured, I don't believe we currently have that need. We have never had any reported incidents of accounts being compromised and not sure what someone would do if they did have a password to an account since we don't handle sensitive personal information. Those that donate to the forum do so through PayPal, which is over a secure, encrypted connection. The forum never has access to either your PayPal account or credit card information. All that is returned to us after the transaction is complete is a transaction number, member name, date/time and the amount donated. And that information is available only to me, as the site administrator.

It is a good idea, however, to safeguard your account by periodically changing your password. Those that may access the site through a public computer should also make certain that they log off completely before leaving the computer. Should you ever suspect that your account has been compromised, please let me know immediately. The vBulletin software does keep track of all IP addresses associated with, or used to access, member accounts. IPs originating through a proxy are summarily rejected.
__________________
Bumper
Administrator
DefensiveCarry.com Forum
Coimhéad fearg fhear na foighde; Beware the anger of a patient man.
Bumper is offline  
Old September 4th, 2008, 08:35 AM   #5
VIP Member
 
JonInNY's Avatar
 
Join Date: Jan 2008
Location: Mid-Hudson Valley New York State
Posts: 2,525
JonInNY is a forum contributor
Quote:
Originally Posted by retsupt99 View Post
I would say that this DC forum IS a financially risky site...every time I see another nice gun, I think about how I might buy it!
I never though about it that way. And gee, I'm picking up a new gun myself today. I guess you're right!
__________________
  • "The right of voting for representatives is the primary right by which all other rights are protected."
    -- Thomas Paine
____________________________
  • Quis custodiet ipsos custodes? (Who will guard the guards?)
    -- Juvenal
JonInNY is offline  
Old September 5th, 2008, 01:14 PM   #6
ctr
Member
 
ctr's Avatar
 
Join Date: Aug 2007
Location: Virginia
Posts: 245
ctr is a forum contributor
The content of our wonderful site is not Secret or even Top Secret. If you are worried about man-in-the middle attacts, you should see what the staff at some NOCs do!
ctr is offline  
Old September 5th, 2008, 08:08 PM   #7
Ex Member
 
FN1910's Avatar
 
Join Date: Aug 2007
Location: SC
Posts: 1,236
FN1910
Watch out for the black helicopters circling your house right now. You have already been discovered.
FN1910 is offline  
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On
Trackbacks are Off
Pingbacks are Off
Refbacks are Off
Forum Jump


All times are GMT -4. The time now is 02:30 PM.


bestBest selection of rifle scopes, holsters, belts, pouches, gun accessories, gun cases, dry boxes, flashlights, night vision, binoculars, sunglasses. Information and 1000's of military, law enforcement, tactical gear from OpticsPlanet and Tactical Store w/ FREE UPS! Top brands - 5.11, Bianchi, BlackHawk, Bushnell, EOT ech, Leupold, Pelican, Galco, Fobus, Safariland, Steiner, StreamLight, SureFire, Nikon, Trijicon, UnderArmour, Uncle Mike's, Wiley X,

Hosted ByTranquil Hosting

Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd. Search Engine Friendly URLs by vBSEO 3.2.0
Copyright DefensiveCarry.com © 2004-2008