Dan Harkins wrote:
>   Perhaps it would be a good idea to mandate that the method used
> to authenticate the tunnel (outer method, whatever you want to call
> it) MUST NOT be susceptible to a dictionary attack if it is going
> to be used to transport a username and plaintext password to the
> authentication server.

  That is reasonable.

  Alan DeKok.
_______________________________________________
Emu mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/emu

Reply via email to