Re: netatalk security vs. ftp, ssh


Subject: Re: netatalk security vs. ftp, ssh
From: Radar O'Reilly (nathan.willard@yale.edu)
Date: Mon Jul 31 2000 - 08:30:07 EDT


On Sun, 30 Jul 2000, Ron Chmara wrote:

> With ssh, you are warned durning the key exchange if a server identity
> is being spoofed. No suck luck with ftp or asip.

mmm...kerberos.

If you can set up a kerberos domain, you can provide secure and
doubly-authenticated logins, ftp, and (with a little screaming and moaning)
netatalk functionality. Without the need for a stored key.

 __________/| Nathan "Radar" Willard MC '00 | "A Sucking Chest Wound is
(_|__|_____\|________ PO Box 203927 | nature's way of telling
     |_|_____________)- New Haven, CT 06520 | you to slow down."



This archive was generated by hypermail 2b28 : Wed Jan 17 2001 - 14:31:45 EST