From owner-freebsd-net Tue Sep 25 11:24:30 2001 Delivered-To: freebsd-net@freebsd.org Received: from wall.polstra.com (wall-gw.polstra.com [206.213.73.130]) by hub.freebsd.org (Postfix) with ESMTP id 22F2837B415 for ; Tue, 25 Sep 2001 11:21:40 -0700 (PDT) Received: from vashon.polstra.com (vashon.polstra.com [206.213.73.13]) by wall.polstra.com (8.11.3/8.11.3) with ESMTP id f8PILb806758; Tue, 25 Sep 2001 11:21:37 -0700 (PDT) (envelope-from jdp@wall.polstra.com) Received: (from jdp@localhost) by vashon.polstra.com (8.11.6/8.11.0) id f8PILa519449; Tue, 25 Sep 2001 11:21:36 -0700 (PDT) (envelope-from jdp) Date: Tue, 25 Sep 2001 11:21:36 -0700 (PDT) Message-Id: <200109251821.f8PILa519449@vashon.polstra.com> To: net@freebsd.org From: John Polstra Cc: wollman@khavrinen.lcs.mit.edu Subject: Re: Solution (RE: VPN client with mpd) In-Reply-To: <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu> References: <200109251809.f8PI9Rl19337@vashon.polstra.com> <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu> Organization: Polstra & Co., Seattle, WA Sender: owner-freebsd-net@FreeBSD.ORG Precedence: bulk List-ID: List-Archive: (Web Archive) List-Help: (List Instructions) List-Subscribe: List-Unsubscribe: X-Loop: FreeBSD.org In article <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu>, Garrett Wollman wrote: > < said: > > > The trouble with this is that your password will be sent unencrypted > > across the Internet, very possibly hitting a sniffer or two along the > > way. It's better to insist on chap and fix the broken peers. > > Actually, no: the other side, which considers itself a server, doesn't > want to authenticate *itself* in any way to clients (since Windows > clients have no way to accept server authentication). It's perfectly > happy to have clients authenticate themselves. Oh. I haven't actually sniffed it, so I'll assume you're right. I apologize for the misinformation. John -- John Polstra jdp@polstra.com John D. Polstra & Co., Inc. Seattle, Washington USA "Disappointment is a good sign of basic intelligence." -- Chögyam Trungpa To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-net" in the body of the message