Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 12 Jun 2008 20:36:41 -0700
From:      "Kevin Oberman" <oberman@es.net>
To:        Randy Bush <randy@psg.com>
Cc:        freebsd-net@freebsd.org, Brooks Davis <brooks@freebsd.org>, Ian Smith <smithi@nimnet.asn.au>, Peter Losher <Peter_Losher@isc.org>
Subject:   Re: ssh window 
Message-ID:  <20080613033641.9A5C345048@ptavv.es.net>
In-Reply-To: Your message of "Fri, 13 Jun 2008 12:29:45 %2B0900." <4851E9A9.90809@psg.com> 

next in thread | previous in thread | raw e-mail | index | archive | help
--==_Exmh_1213328201_9366P
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

> Date: Fri, 13 Jun 2008 12:29:45 +0900
> From: Randy Bush <randy@psg.com>
> Sender: owner-freebsd-net@freebsd.org
> 
> Ian Smith wrote:
> > On Thu, 12 Jun 2008, Brooks Davis wrote:
> >  > On Thu, Jun 12, 2008 at 06:30:05PM -0700, Peter Losher wrote:
> >  > > Randy Bush wrote:
> >  > >> this has been a cause of great pain for a loooong time.
> >  > >> 
> >  > >>    http://www.psc.edu/networking/projects/hpn-ssh/
> >  > >> 
> >  > >> as openssh seems not to be fixing it (and i do not consider a 2mb fixed
> >  > >> buffer to be fixed, especially not from a 100mb link here in tokyo and
> >  > >> servers in the states, europe, and africa), perhaps i could convince
> >  > >> freebsd net folk to do so?
> >  > > 
> >  > > FYI - HPN is already a build option in the openssh-portable port.
> >  > 
> >  > I do think we should strongly consider adding the rest of it to the base.
> > 
> > Presumably with suitable caveats re NONE CYPHER, NoneEnabled=no default? 
> 
> for sure!

Agreed. PSC had valid reasons to allow NONE. They just don't apply to
most cases and are a a very bad idea for a default install.
-- 
R. Kevin Oberman, Network Engineer
Energy Sciences Network (ESnet)
Ernest O. Lawrence Berkeley National Laboratory (Berkeley Lab)
E-mail: oberman@es.net			Phone: +1 510 486-8634
Key fingerprint:059B 2DDF 031C 9BA3 14A4  EADA 927D EBB3 987B 3751

--==_Exmh_1213328201_9366P
Content-Type: application/pgp-signature

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2.0.9 (FreeBSD)
Comment: Exmh version 2.5 06/03/2002

iD8DBQFIUetJkn3rs5h7N1ERAgMGAJ9FvgFhCfR5GOFL1V7vbWr3uLXyagCgk/vl
vBlWK//v2PGP0x737ZnHVx4=
=W+6t
-----END PGP SIGNATURE-----

--==_Exmh_1213328201_9366P--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080613033641.9A5C345048>