From owner-freebsd-security Wed Jul 10 13:14: 7 2002 Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.FreeBSD.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id BE70437B400 for ; Wed, 10 Jul 2002 13:14:04 -0700 (PDT) Received: from mailsrv.otenet.gr (mailsrv.otenet.gr [195.170.0.5]) by mx1.FreeBSD.org (Postfix) with ESMTP id C4CE943E67 for ; Wed, 10 Jul 2002 13:14:02 -0700 (PDT) (envelope-from keramida@ceid.upatras.gr) Received: from hades.hell.gr (patr364-a18.otenet.gr [195.167.109.50]) by mailsrv.otenet.gr (8.12.4/8.12.4) with ESMTP id g6AKDtHw003499; Wed, 10 Jul 2002 23:13:56 +0300 (EEST) Received: from hades.hell.gr (hades [127.0.0.1]) by hades.hell.gr (8.12.5/8.12.5) with ESMTP id g6AKDY9N002685; Wed, 10 Jul 2002 23:13:53 +0300 (EEST) (envelope-from keramida@ceid.upatras.gr) Received: (from charon@localhost) by hades.hell.gr (8.12.5/8.12.5/Submit) id g6AHwaH7001760; Wed, 10 Jul 2002 20:58:36 +0300 (EEST) (envelope-from keramida@ceid.upatras.gr) Date: Wed, 10 Jul 2002 20:58:36 +0300 From: Giorgos Keramidas To: "Dalin S. Owen" Cc: Laurence Brockman , security@FreeBSD.org Subject: Re: hiding OS name Message-ID: <20020710175836.GF1118@hades.hell.gr> References: <006601c22627$a9199000$21020a0a@mti.itb.ac.id> <3D294723.7022CD07@pantherdragon.org> <001201c22689$6049a790$140115ac@BCDOMAIN01.COM> <20020708111122.A33379@nexusxi.com> Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline In-Reply-To: <20020708111122.A33379@nexusxi.com> X-Operating-System: FreeBSD 5.0-CURRENT i386 X-PGP-Fingerprint: C1EB 0653 DB8B A557 3829 00F9 D60F 941A 3186 03B6 X-Phone: +30-944-116520 Sender: owner-freebsd-security@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org On 2002-07-08 11:11 +0000, Dalin S. Owen wrote: > Oh, one more thing, go in to the source for sshd and rip the "FreeBSD" > from the bannertext and maybe lie about what version of OpenSSH you have. That's not a good idea. Some of the parts of that banner line are used AFAIK by the SSH client to determine what features the server supports and what the protocol of the rest of the conversation is :/ I could be wrong though, so double check with the source code, before doing something like this. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-security" in the body of the message