From owner-freebsd-current@freebsd.org Tue Aug 18 16:10:53 2015 Return-Path: Delivered-To: freebsd-current@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id CFAEA9BC8AD for ; Tue, 18 Aug 2015 16:10:53 +0000 (UTC) (envelope-from kaduk@mit.edu) Received: from dmz-mailsec-scanner-1.mit.edu (dmz-mailsec-scanner-1.mit.edu [18.9.25.12]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 414C71243; Tue, 18 Aug 2015 16:10:52 +0000 (UTC) (envelope-from kaduk@mit.edu) X-AuditID: 1209190c-f79296d000000622-0d-55d357d68eca Received: from mailhub-auth-2.mit.edu ( [18.7.62.36]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-1.mit.edu (Symantec Messaging Gateway) with SMTP id 7C.42.01570.6D753D55; Tue, 18 Aug 2015 12:05:42 -0400 (EDT) Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) by mailhub-auth-2.mit.edu (8.13.8/8.9.2) with ESMTP id t7IG5fnw020332; Tue, 18 Aug 2015 12:05:41 -0400 Received: from multics.mit.edu (system-low-sipb.mit.edu [18.187.2.37]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id t7IG5aZB003008 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Tue, 18 Aug 2015 12:05:39 -0400 Received: (from kaduk@localhost) by multics.mit.edu (8.12.9.20060308) id t7IG5ZUu016821; Tue, 18 Aug 2015 12:05:35 -0400 (EDT) Date: Tue, 18 Aug 2015 12:05:35 -0400 (EDT) From: Benjamin Kaduk To: Garrett Cooper cc: Slawa Olhovchenkov , Marcel Moolenaar , "O. Hartmann" , Ed Schouten , freebsd-current , Marcel Moolenaar Subject: Re: r286615: /usr/libexec/ftpd broken! In-Reply-To: Message-ID: References: <20150811074041.6700e943@freyja.zeit4.iv.bundesimmobilien.de> <20150811104451.2031fff2@freyja.zeit4.iv.bundesimmobilien.de> <20150818071559.4278987d@freyja.zeit4.iv.bundesimmobilien.de> <20150818155755.GG3158@zxy.spb.ru> User-Agent: Alpine 1.10 (GSO 962 2008-03-14) MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFlrGKsWRmVeSWpSXmKPExsUixG6nonst/HKowZZJRhY39x9gt5jz5gOT xcerM9gtOo4ZW/yd9YfJYsLraItf764yO7B7zPg0n8Vj56y77B6vtz1m9djWt5nR49T2g4we P08LBbBFcdmkpOZklqUW6dslcGWcnvaCqeAye0XTozbmBsZWti5GTg4JAROJr38XM0HYYhIX 7q0HinNxCAksZpK41jWXGcLZyChx/sgDJgjnEJPEmm0/WCGcBkaJlefmMoL0swhoS/Qd+ssK YrMJqEjMfLMRbIeIgJbEvL8LwRqYBVqZJPZP3MMCkhAW0Jfon9YPVsQpYCvxcdcTZhCbV8BR YsfFI1C7TzBLbOw/D1YkKqAjsXr/FBaIIkGJkzOfgNnMQBuWT9/GMoFRcBaS1CwkqQWMTKsY ZVNyq3RzEzNzilOTdYuTE/PyUot0DfVyM0v0UlNKNzGCooBTkmcH45uDSocYBTgYlXh4LxZc ChViTSwrrsw9xCjJwaQkyjsh+HKoEF9SfkplRmJxRnxRaU5q8SFGCQ5mJRFeSV6gHG9KYmVV alE+TEqag0VJnHfTD74QIYH0xJLU7NTUgtQimKwMB4eSBK9VGFCjYFFqempFWmZOCUKaiYMT ZDgP0HATkBre4oLE3OLMdIj8KUZdjgU/bq9lEmLJy89LlRLnDQQpEgApyijNg5sDS16vGMWB 3hLmDQWp4gEmPrhJr4CWMAEtOTzhIsiSkkSElFQD4+61Cy2fPY3+I6t1NvXBn+cbtzi2WNnr tRefFlw+7WVOYFLO24P6gp69Mk9XJHxp7Vb1vultr8RWHHssNPXzeub9KZucZr6rVNFcZ7PX eOLVmz82CRsdqUjff0EtwDfVxV64MdtDslj9u+eTvTqn9+SeUy9kn25+aOKkjRdfh877F7O0 9aPIUyWW4oxEQy3mouJEAMOCC3g5AwAA X-BeenThere: freebsd-current@freebsd.org X-Mailman-Version: 2.1.20 Precedence: list List-Id: Discussions about the use of FreeBSD-current List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 18 Aug 2015 16:10:54 -0000 On Tue, 18 Aug 2015, Garrett Cooper wrote: > > > On Aug 18, 2015, at 08:57, Slawa Olhovchenkov wrote: > > > > On Tue, Aug 18, 2015 at 11:38:47AM -0400, Benjamin Kaduk wrote: > > > >> On Tue, 18 Aug 2015, Marcel Moolenaar wrote: > >> > >>>> On Aug 17, 2015, at 10:15 PM, O. Hartmann wrote: > >>>> > >>>> Port security/heimdal installs its own ftpd with its appropriate manpages. > >>> > >>> Ugh :-( > >> > >> I would argue that heimdal should not be in the business of supplying an > >> ftpd. Kerberos-enabled ftp basically does not offer any advantages over > >> scp. > > > > OPENSSH_NONE_CIPHER is OFF by default, i.e. ftp can give more speed. > > More pragmatically, there are less ssh clients (openssh or bust really), > whereas there are more ftp clients (Firefox, Chrome, ftp(1), python, > etc). I specifically said "Kerberos-enabled ftp". The things you listed do not appear to qualify. -Ben