[525] in NetBSD-Development

home help back first fref pref prev next nref lref last post

Re: telnet login broken again

daemon@ATHENA.MIT.EDU (John Kohl)
Tue Feb 7 08:29:29 1995

Date: Tue, 7 Feb 1995 08:28:06 -0500
From: John Kohl <jtk@atria.com>
To: ghudson@MIT.EDU
Cc: netbsd-dev@MIT.EDU, jtkohl@MIT.EDU
In-Reply-To: <199502070645.BAA15494@glacier.MIT.EDU> (message from Greg Hudson on Tue, 07 Feb 1995 01:45:23 EST)

I'm getting much better error messages this morning--did something
change?  Maybe this is timing/load related?

Anyway, now it says:

Connected to lola-granola.mit.edu.
Escape character is '^^'.
[ Trying KERBEROS4 ... ]
[ Kerberos V4 accepts you ]
[ Kerberos V4 challenge successful ]
[ Output is now encrypted with type DES_CFB64 ]
What you type is not protected.

You must use the encryption option.

Connection closed by foreign host.


This is Clearly Bogus (tm) and I've complained about it previously to
the athena hacks working on telnet.  I routinely use asymmetric
encryption--encrypting only my typing and not the return path.  What I
type IS PROTECTED, but telnetd is just braindamaged and insists on
wasteful bidirectional encryption.

For now, I can survive by turning off encryption after I'm logged in,
but we should fix telnetd and cram the changes back down DCNS's throat.

==John

home help back first fref pref prev next nref lref last post