From owner-freebsd-hackers Fri Dec 5 21:30:30 1997 Return-Path: Received: (from root@localhost) by hub.freebsd.org (8.8.7/8.8.7) id VAA19359 for hackers-outgoing; Fri, 5 Dec 1997 21:30:30 -0800 (PST) (envelope-from owner-freebsd-hackers) Received: from kai.communique.net (Kai.communique.net [204.27.67.90]) by hub.freebsd.org (8.8.7/8.8.7) with ESMTP id VAA19337 for ; Fri, 5 Dec 1997 21:30:23 -0800 (PST) (envelope-from nectar@NECTAR.COM) Received: (from smap@localhost) by kai.communique.net (8.8.8/8.8.7) id XAA03778; Fri, 5 Dec 1997 23:32:30 -0600 (CST) X-Authentication-Warning: kai.communique.net: smap set sender to using -f Received: from localhost.communique.net(127.0.0.1) by kai.communique.net via smap (V2.0) id xma003775; Fri, 5 Dec 97 23:32:06 -0600 Date: Fri, 5 Dec 1997 23:32:02 -0600 (CST) From: Jacques Vidrine X-Sender: nectar@kai.communique.net To: "David E. Cross" cc: freebsd-hackers@FreeBSD.ORG Subject: Re: Telnet Root access In-Reply-To: Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-hackers@FreeBSD.ORG X-Loop: FreeBSD.org Precedence: bulk Actually, who knows if SSH is _really_ safe? Have you checked with a packet sniffer to see if everything is really encrypted all the time? Personally, I only use my computer from a serial console (they can sniff modern monitors too easily). Never even across phone lines. Sometimes I get nervous if I can't see the entire length of my serial cable!! :-) :-) Seriously it would be a boon to all if ssh was installed by default and you had to work to get telnetd running ... of course I know this won't happen. If only there were several good, free Windoze ssh implementations. Jacques Vidrine On Fri, 5 Dec 1997, David E. Cross wrote: > IMO: sending the root password plaintext over the network at any time is a > *NO*. I *only* use ssh to connect as root (even when su-ing), and only > from a host I trust, and a binary I trust. I have learned the hard way > not to compromise on neteork/system security. > > -- > David Cross > ACS Consultant