[1844] in SIPB_Linux_Development
Re: suggestion for /etc/athena/inetd.conf
daemon@ATHENA.MIT.EDU (Erik Nygren)
Mon Oct 6 00:03:30 1997
To: "Kevin 'Bob' Fu" <fubob@MIT.EDU>
Cc: linux-dev@MIT.EDU
In-Reply-To: Your message of "Sun, 05 Oct 1997 23:23:20 EDT."
<199710060323.XAA02449@tiramisu.mit.edu>
Date: Mon, 06 Oct 1997 00:03:10 EDT
From: Erik Nygren <nygren@MIT.EDU>
> Do people object to distributing the default /etc/athena/inetd.conf
> with "telnetd -a valid" set?
>
> We should more activity discourage unencrypted logins. Disallowing
> non-kerberized telnet is more convenient than dealing with sniffed
> passwords.
It would be much better if there was an option that
disallowed unencrypted connections but still could
prompt for a password. Although this is more
vulnerable to login being replaced...
Erik