Hi,
Here's a question for the lawyers. In certain situations, does the VeriSign SiteFinder service violate the Electronic Communications Privacy Act (AKA, ECPA)?
Here's the actual text of the ECPA: http://www4.law.cornell.edu/uscode/18/pIch119.html
With my packet sniffer, I noticed that the VeriSign SiteFinder Web server happily accepts POST form data which is intended for another Web server. This situation will occur if the domain name is misspelled in the action URL of a form.
Without SiteFinder in the picture, the HTTP POST operation is never done since the DNS lookup fails.