Hello Erwin,

Friday, May 21, 2004, 5:14:30 PM, you wrote:

EH> Hi,

EH> At 11:41 21.05.04 +0200, you wrote:
>>Hello blist,
>>

>>In the OLD days, people were happy with SMTP-Auth.  I consider it LESS
>>security as SMTP after POP, because with SMTP-Auth, You sent Your
>>e-mailadress and Your password of Your mailbox over the internet.
>>When a man-in-the-middle catch this e-mail (or worse Your PW), he can
>>use it for spam, or access Your mailbox.

EH> This is only true for SMTP Authentication of type "plain" and "login".

EH> With CRAM-MD5 its quite save.

EH> Read: http://www.fehcom.de/qmail/smtpauth.html#FRAMEWORK

EH> regards.
EH> --eh.

EH> Dr. Erwin Hoffmann | FEHCom | http://www.fehcom.de/
EH> Wiener Weg 8, 50858 Cologne | T: +49 221 484 4923 | F: ...24

Yes, it's 'quite' safe, but You still reveal Your e-mailadress.
If there are many hops between Your workstation and the smtpserver,
You can get some spam in return.

More, Your mail is sent in plaintext.  I prefer encrypted streams,
so SUPP's patch which encrypts the stream with SSL, and authenticate
afterwards (in plaintext) is still the best way to go, it's not a big
effort to realize.

-- 
Best regards,
 DEBO Jurgen
 mailto:[EMAIL PROTECTED]

--------------------------------------------------------------------------------------------
                 www.guide.be * www.gids.be * www.guide.fr * www.shop.fr
--------------------------------------------------------------------------------------------
         / \         sarl GUIDE (sdet)
         ---         the GUIDE, de GIDS, TELESHOP, SHOP
     __   |   __     128, rue du faubourg de Douai  
    |  /  |  \  |    FR-59000 Lille, La France
     / \  |  / \     TÚl/Fax +32 59 26.91.51 Mobile +32 479 212.841
 /|______\|/______|\ Site    http://sarl.guide.fr
 \|      /|\      |/ N░ TVA  FR-55.440.243.988    
    |\ /  |  \ /|    RC Lille 74075/2001B01478
    |__\  |  /__|    Siret 440 243 988 00027
          |          Compte BE: KREDBEBB (BIC) BE56.466-5571951-88 (IBAN)              
                 
         ---         Compte FR: CMCIFR2A (BIC) FR76.1562-9027-0200-0455-1870-127 (IBAN)
         \ /         Conditions (terms): http://sarl.guide.fr/conditions.php  
--------------------------------------------------------------------------------------------
www.teleshop.fr * www.teleshop.be * www.teleshop.biz * www.teleshop.info * 
www.teleshop.name
--------------------------------------------------------------------------------------------

Reply via email to