Subject: Re: sshd config?
To: John Hawkinson <jhawk@MIT.EDU>
From: mouss <usebsd@free.fr>
List: tech-userlevel
Date: 11/29/2003 13:36:58
While I do understand that "none" makes ssh unsecure, and may cause a
misplaced sense of security, I prefer to have the option available.
After all, even with null crypto, ssh is no worse than rlogin and
friends (unless I am missing atrick here?).
regards,
mouss
John Hawkinson wrote:
> My [possibly flawed] understanding is that using 'none' causes
> authentication to be insecure, not just encryption. So not only might
> it compromise the current transaction, it could compromise future
> transactions.
>
> --jhawk
>
>