PTR checks for ssh on call-in is stupid.

But, putting ssh host keys in the DNS and not having to do that 'are you
sure? are you sure? are you sure?' dance from "Father Ted" is not stupid.


On Tue, Nov 11, 2014 at 5:48 PM, Lee Howard <[email protected]> wrote:

> Many SSH servers (by default) reject connections from IP addresses without
> PTRs.
> This is stupid.
>
> I heard applause during the WG meeting in response to these statements;
> sounded like consensus to me. I said I would check that consensus on list.
>
> Thanks,
> Lee
>
>
> _______________________________________________
> DNSOP mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/dnsop
>
_______________________________________________
DNSOP mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to