> From: "Parks, Raymond" <[email protected]>
> Subject: Re: [FRIAM] Passwords
> 
> Folks,
> 
>  I decided to put my advice about securing home networks in this message, 
> along with password advice. ....

Ray: Would not trust a PKI system (openssh) with passwords disabled?  What sort 
of vulnerability would it face .. other than someone stealing the private key?  
I had naively assumed it would be secure, and planned a set of tunnels for 
screen sharing, file sharing, and ssh.  That's basically my goal: having lots 
of devices share resources like screen (VNC) and data (ftp/ssh).

The port-knocking scheme seems very interesting and there is a command-line 
client/daemon for several OSs: http://www.zeroflux.org/projects/knock

I completely agree the limited password symbols/length of many sites make 
things a lot harder.  Given some reasonable pass-phrase with unique 
modification for each site makes a lot of sense, but unfortunately the 
differing passwords allowed makes this impossible.

    -- Owen


============================================================
FRIAM Applied Complexity Group listserv
Meets Fridays 9a-11:30 at cafe at St. John's College
lectures, archives, unsubscribe, maps at http://www.friam.org

Reply via email to