[12242] in bugtraq

home help back first fref pref prev next nref lref last post

Re: Security of "Virtual Network Computer"

daemon@ATHENA.MIT.EDU (Luca Berra)
Wed Oct 13 22:17:53 1999

X-Envelope-To: BUGTRAQ@SECURITYFOCUS.COM
Mail-Followup-To: BUGTRAQ@SECURITYFOCUS.COM
Mime-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Message-Id:  <19991013143407.A13057@colombina.comedia.it>
Date:         Wed, 13 Oct 1999 14:34:07 +0200
Reply-To: bluca@comedia.it
From: Luca Berra <bluca@COMEDIA.IT>
X-To:         BUGTRAQ@SECURITYFOCUS.COM
To: BUGTRAQ@SECURITYFOCUS.COM
In-Reply-To:  <3802E898.47D1A7F3@enternet.se>

On Tue, Oct 12, 1999 at 09:51:52AM +0200, Mikael Olsson wrote:
>
> Would you allow vanilla telnet to your protected machines?
> Probably not.
> If you need to run VNC over an untrusted network: tunnel it through
> something More Secure(tm) such as SSH or IPSec.

I'd also like to add that Ray Jones (rjones@pobox.com)
made some patches to vnc to add SSL, these can be fetched
at http://web.mit.edu/thouis/vnc/

--
Luca Berra -- bluca@comedia.it
    Communications Media & Services S.r.l.

home help back first fref pref prev next nref lref last post