OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
FreeBSD Security Archives: Re: OpenSSH protocol 1.6 proposal

Re: OpenSSH protocol 1.6 proposal


Subject: Re: OpenSSH protocol 1.6 proposal
From: sthaugnethelp.no
Date: Sun Jan 02 2000 - 12:04:58 CST


> We've all lived with the deficiencies of the ssh1 protocol for several
> years now, and my guess is that we could live a few more months with it
> to see if openSSH gets something closer to the version 2 protocol working.
> I have a much bigger problem trying to interrupt a flood of output to my
> ssh session (due to cat-ing the wrong file, for instance), then I have
> with malicious interceptors trying playback attacks (or any other kind
> of attacks). A control-channel for interrupts would be of much more
> practical benefit to me.

Agreed.

> I am also uneasy about a fork at this time because I use ssh on multiple
> platforms. I do understand that your change is backward-compatible,
> but what good is an improvement which only happens between a half-dozen
> freebsd boxes I have, if it isn't going to be on the 300-400 aix, irix,
> and solaris boxes which is where I'm making most of my connections to?
> I have some optimism that the OpenSSH project will track cross-platform
> issues (maybe not "supreme confidence", but "optimism"). If freebsd is
> going to fork so soon, is it also going to track cross-platform issues?
> My guess is "they won't be a priority".

These thoughts echo my own pretty well. I use SSH on a lot of machines
and platforms - and I can safely say that a FreeBSD-specific version
would *not* be used (this despite FreeBSD being my preferred platform).

Interoperability, plus having the same features on all platforms, are
the important points here.

Steinar Haug, Nethelp consulting, sthaugnethelp.no

To Unsubscribe: send mail to majordomoFreeBSD.org
with "unsubscribe freebsd-security" in the body of the message



This archive was generated by hypermail 2b27 : Sun Jan 02 2000 - 12:05:57 CST