From owner-freebsd-questions Wed Sep 11 21:21:56 2002 Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 65C6537B400 for ; Wed, 11 Sep 2002 21:21:53 -0700 (PDT) Received: from smtp.mailix.net (smtp.mailix.net [216.148.213.132]) by mx1.FreeBSD.org (Postfix) with ESMTP id F083043E3B for ; Wed, 11 Sep 2002 21:21:52 -0700 (PDT) (envelope-from tapeworm@insekta.org) Received: from [12.246.29.145] (helo=shiva.insekta.org) by smtp.mailix.net with asmtp (Exim 4.01) id 17pLUF-0004ga-00 for freebsd-questions@freebsd.org; Wed, 11 Sep 2002 21:21:51 -0700 Date: Wed, 11 Sep 2002 21:19:48 -0700 From: erk! To: freebsd-questions@freebsd.org Subject: Re: tridiavnc security info? Message-Id: <20020911211948.5a2627c9.tapeworm@insekta.org> In-Reply-To: <5.1.0.14.2.20020912123436.03b4dec0@pop.ozemail.com.au> References: <20020911090529.C7198@seekingfire.com> <20020911090529.C7198@seekingfire.com> <5.1.0.14.2.20020912123436.03b4dec0@pop.ozemail.com.au> Organization: the insekta organization X-Mailer: Sylpheed version 0.8.2 (GTK+ 1.2.10; i386-portbld-freebsd4.6.2) Mime-Version: 1.0 Content-Type: text/plain; charset=US-ASCII Content-Transfer-Encoding: 7bit Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.ORG On Thu, 12 Sep 2002 12:40:22 +1000 Rob B wrote: > AFAIK, all passwords used to connect to VNC are in the clear, so I tunnel > my VNC client through an ssh session. > > WinNT (work) client machine > VNC Client ---> PuTTY -----> internet -----> Unix box -----> VNC > Server > > This is really only worth doing if your VNC session is going over the > internet. For internal stufff, I wouldn't worry. Use one of the firewalls > included in FreeBSD to protect that box. Sounds good.. I was planning to run it through SSH, anyhow, or at least SSL (which i seem to recall seeing that VNC Pro supports), but i'll go the SSH route if at all possible. As for the firewall, i've had IPFW up since day 1. Thanks for the info, though. - erik To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message