Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 28 Jun 1997 01:00:14 -0700
From:      "Jordan K. Hubbard" <jkh@time.cdrom.com>
To:        Simon Shapiro <Shimon@i-Connect.Net>
Cc:        Bruce Evans <bde@zeta.org.au>, mburgett@cmnsens.zoom.com, freebsd-hackers@FreeBSD.ORG
Subject:   Re: com console, and h/w flow control... 
Message-ID:  <2772.867484814@time.cdrom.com>
In-Reply-To: Your message of "Sat, 28 Jun 1997 00:14:56 PDT." <XFMail.970628001456.Shimon@i-Connect.Net> 

next in thread | previous in thread | raw e-mail | index | archive | help
> Actually, we are building just such system right now.  We ridicule
> Slowlaris to no end for their incredible stupidity by having just such a
> ``feature''.
> 
> I am SURE I am missing something in this discussion...

A good grasp of terminal server security? :-)

Seriously, I have to wonder at this whole line of inquiry.  Let's
forget FreeBSD for a moment and say that I've got the console ports to
all my cisco routers wired up to such a terminal server.  Can you
seriously tell me that I'd be in my right mind to let _anyone_ other
than the admin staff be able to log into this particular terminal
server, much less know the phone numbers for it?  There's a lot you
can do if you've got a wired-in connection to the serial console of
any ten devices I can name, much less FreeBSD, and you guard that
connectivity just as jealously as you guard the physical security of
the machine or you expect your life to suck.

					Jordan



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?2772.867484814>