From owner-freebsd-stable@freebsd.org Tue Apr 6 10:23:40 2021 Return-Path: Delivered-To: freebsd-stable@mailman.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.nyi.freebsd.org (Postfix) with ESMTP id DF9A95C9846 for ; Tue, 6 Apr 2021 10:23:40 +0000 (UTC) (envelope-from SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz) Received: from elsa.codelab.cz (elsa.codelab.cz [94.124.105.4]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx1.freebsd.org (Postfix) with ESMTPS id 4FF3XC709rz4RrH for ; Tue, 6 Apr 2021 10:23:39 +0000 (UTC) (envelope-from SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz) Received: from elsa.codelab.cz (localhost [127.0.0.1]) by elsa.codelab.cz (Postfix) with ESMTP id 0EB9B28417 for ; Tue, 6 Apr 2021 12:23:32 +0200 (CEST) Received: from illbsd.quip.test (ip-94-113-69-69.net.upcbroadband.cz [94.113.69.69]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by elsa.codelab.cz (Postfix) with ESMTPSA id 2D26628416 for ; Tue, 6 Apr 2021 12:23:31 +0200 (CEST) Subject: Re: Deprecating base system ftpd? To: freebsd-stable@freebsd.org References: <6051E091-200B-4A7F-9A53-86652425BBB6@punkt.de> From: Miroslav Lachman <000.fbsd@quip.cz> Message-ID: <9e38ef19-1ed7-9d83-4c25-ccd3b631c5fe@quip.cz> Date: Tue, 6 Apr 2021 12:23:30 +0200 User-Agent: Mozilla/5.0 (X11; FreeBSD amd64; rv:68.0) Gecko/20100101 Thunderbird/68.10.0 MIME-Version: 1.0 In-Reply-To: Content-Type: text/plain; charset=windows-1252; format=flowed Content-Language: en-US Content-Transfer-Encoding: 7bit X-Rspamd-Queue-Id: 4FF3XC709rz4RrH X-Spamd-Bar: / Authentication-Results: mx1.freebsd.org; dkim=none; dmarc=none; spf=none (mx1.freebsd.org: domain of SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz has no SPF policy when checking 94.124.105.4) smtp.mailfrom=SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz X-Spamd-Result: default: False [-0.80 / 15.00]; RCVD_VIA_SMTP_AUTH(0.00)[]; TO_DN_NONE(0.00)[]; RCVD_COUNT_THREE(0.00)[3]; NEURAL_HAM_SHORT(-1.00)[-1.000]; FORGED_SENDER(0.30)[000.fbsd@quip.cz,SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz]; RECEIVED_SPAMHAUS_PBL(0.00)[94.113.69.69:received]; RCVD_TLS_LAST(0.00)[]; SUBJECT_ENDS_QUESTION(1.00)[]; RBL_DBL_DONT_QUERY_IPS(0.00)[94.124.105.4:from]; R_DKIM_NA(0.00)[]; MID_RHS_MATCH_FROM(0.00)[]; ASN(0.00)[asn:42000, ipnet:94.124.104.0/21, country:CZ]; MIME_TRACE(0.00)[0:+]; ARC_NA(0.00)[]; FROM_NEQ_ENVFROM(0.00)[000.fbsd@quip.cz,SRS0=/AfJ=JD=quip.cz=000.fbsd@elsa.codelab.cz]; FROM_HAS_DN(0.00)[]; TO_MATCH_ENVRCPT_ALL(0.00)[]; NEURAL_HAM_LONG(-1.00)[-1.000]; MIME_GOOD(-0.10)[text/plain]; PREVIOUSLY_DELIVERED(0.00)[freebsd-stable@freebsd.org]; AUTH_NA(1.00)[]; RCPT_COUNT_ONE(0.00)[1]; SPAMHAUS_ZRD(0.00)[94.124.105.4:from:127.0.2.255]; DMARC_NA(0.00)[quip.cz]; NEURAL_HAM_MEDIUM(-1.00)[-1.000]; R_SPF_NA(0.00)[no SPF record]; MAILMAN_DEST(0.00)[freebsd-stable] X-BeenThere: freebsd-stable@freebsd.org X-Mailman-Version: 2.1.34 Precedence: list List-Id: Production branch of FreeBSD source code List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 06 Apr 2021 10:23:40 -0000 On 06/04/2021 11:29, Stefan Bethke wrote: > Am 05.04.2021 um 21:01 schrieb Patrick M. Hausen : >> >> But still even on "the Internet", FTP is the most used method for customers >> of static website hosting. You cannot teach these people what an SSH key is. >> Just my experience, but backed by a load of customer interactions over more >> than 20 years ... > > Strato did disable FTP access over a year ago, and instructed customers on how to use SSH-based access instead, so it's definitely possible, and people are moving towards more secure protocols, even when (non-technical) end users are affected. Working for small / average web hosting company - we disabled plaintext FTP over 15 years ago. All customers are able to use FTP client supporting FTPeS (FTP with explicit TLS). So it definitely is possible if there is a will or enough pressure on customers. On the other hand it does not matter to me if ftpd will be shipped in FreeBSD base for next 10 years. It is just a matter of maintaining it / man power for each release, testing etc. Miroslav Lachman