-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA256 7v5w7go9ub0o wrote: (snip) > This actually creates another question (not to be argumentative :-) ). > > Given that there is no exit node, would an OnionCat to OnionCat > connection over TOR need to be encrypted? Is it plain-text anywhere > along the line? (snip)
No, it wouldn't need extra encryption - a hidden-service connection has end-to-end encryption by its very nature. However - if I understand it right - a connection over OnionCat would still need strong authentication for a service like VNC (say, through SSH), regardless of the presence of encryption. - -- F. Fox AAS, CompTIA A+/Network+/Security+ Owner of Tor node "kitsune" http://fenrisfox.livejournal.com -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.6 (GNU/Linux) Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org iQIVAwUBSGMBduj8TXmm2ggwAQg01Q/9EuEenMQT4QbxPQ8w8g0ZEq/tBKduO8B5 OQKv/I3/+q2sg3Csd88xgbpjv6oYn20Nh8NVNl7j+5AmRK/2lI0S49Vk+OrEkYRA XZ7/cUZNTZJv+BHo3iiKtmNu5ebM6k4vjAHJgpnxFg8w78rgOu6qUUA83yj4kulN lu2TFCi9zl0js8uzm1XhMnh3L5pjKBYyZ+S89Q7zUPOe6bXbsGAU8GwYBNEBdPv4 sgkqkYy4BNgeOR2quu0rIoCWMRtuorvqrR1vJrJqj+NOCM74U3lwUcZqEXsijoRt XMB6BrNH/YIHOxmr7aLlI8OM4NK+IdS1ZKDjUrF17M5kQ/ave0NCTa7rhfzBnejL 8wPI0loDNabGtV+7APV8RMvPJ3kXwpX9Q5Jw1jGhKd7WYdEQqOp27eqNIoMxq6ya VllGUsszwO7s1ZhKhh5qUChNk1rA88ESxLKJ89GQAVBqPxwTAo3IeK02+IEEAoW+ LxfeMag2kjEV+9huG9bj134ykqOEAy3BxsMef6JX8TjM4fCYPHnQq0xywc2F+IDe XoVG7kiP4y9HoIHXsyYoCuC8tgC2rlVxugQGzkGixy7KYyfK7LzY0KB1DolBwY9q HuovM2zOqMBv8vZboFXzmPJuJysRQR550TBbwwBNaEC1v3dlzi1k7YWwaJlS1U2K 2BEOkj9Fj0s= =sSM4 -----END PGP SIGNATURE-----

