IETF-SSH archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

RE: [saag] draft-kwatsen-reverse-ssh submission for review



>> I'm a server if I listen on the ssh port.  On that port you should
>> indicate or negotiate specifics of each side's behavior in-band IMO.
>
>This sounds like a reasonable point of view to me.
>
>If your reversed ssh runs kex with roles reversed (ie, connection
>initiator takes the server's role, presenting its host key and such),
>then a passive snooper can tell the difference, so you might as well
>trigger the role reversal with a pre-kex extension packet.

OK, I'll submit an updated draft for this approach

Thanks,
Kent




Home | Main Index | Thread Index | Old Index