Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 25 Sep 2001 11:21:36 -0700 (PDT)
From:      John Polstra <jdp@polstra.com>
To:        net@freebsd.org
Cc:        wollman@khavrinen.lcs.mit.edu
Subject:   Re: Solution (RE: VPN client with mpd)
Message-ID:  <200109251821.f8PILa519449@vashon.polstra.com>
In-Reply-To: <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu>
References:  <PCELJJEJJMODEMKEBLLBIEDHCAAA.larse@isi.edu> <200109251809.f8PI9Rl19337@vashon.polstra.com> <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu>

next in thread | previous in thread | raw e-mail | index | archive | help
In article <200109251814.f8PIEVJ77448@khavrinen.lcs.mit.edu>,
Garrett Wollman  <wollman@khavrinen.lcs.mit.edu> wrote:
> <<On Tue, 25 Sep 2001 11:09:27 -0700 (PDT), John Polstra <jdp@polstra.com> said:
> 
> > The trouble with this is that your password will be sent unencrypted
> > across the Internet, very possibly hitting a sniffer or two along the
> > way.  It's better to insist on chap and fix the broken peers.
> 
> Actually, no: the other side, which considers itself a server, doesn't
> want to authenticate *itself* in any way to clients (since Windows
> clients have no way to accept server authentication).  It's perfectly
> happy to have clients authenticate themselves.

Oh.  I haven't actually sniffed it, so I'll assume you're right.  I
apologize for the misinformation.

John
-- 
  John Polstra                                               jdp@polstra.com
  John D. Polstra & Co., Inc.                        Seattle, Washington USA
  "Disappointment is a good sign of basic intelligence."  -- Chögyam Trungpa


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-net" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200109251821.f8PILa519449>