Subject: Re: HEADS UP: ssh configuration files renamed
To: None <itojun@iijlab.net>
From: Bruno Saverio Delbono <bruno@lucifer.at>
List: current-users
Date: 04/30/2002 08:48:36
--xgyAXRrhYN0wYx8y
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable
Making, drinking tea and reading an opus magnum from itojun@iijlab.net:
> >While we are on the topic of ssh, why do we print out the version
> >string of the OS as banner when we connect? i.e.
> attackers will try to exploit anyways, and there are a lot of
> other ways you can probe OS type...
I agree. However, that was just one point I wanted to bring out. If we
are confirming to the OpenSSH filename standards...why not have the
sshd banner the same. Alternatively is there a reason why we have the
banner in the first place?
Regards,
-Bruno
--=20
California is a fine place to live -- if you happen to be an orange.
-- Fred Allen
--xgyAXRrhYN0wYx8y
Content-Type: application/pgp-signature
Content-Disposition: inline
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (OpenBSD)
Comment: For info see http://www.gnupg.org
iD8DBQE8zrzUercGlynG6Y0RAi8MAKCRJlb7j0jE+yw2jndJ81Qmo9KtlwCfXA2w
DgUYu6bEi5BTt1qWbhTAfI4=
=P1ES
-----END PGP SIGNATURE-----
--xgyAXRrhYN0wYx8y--