[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-developers] FW: Cobalt RaQ 3 security hole?



Barry Titmarsh wrote:

> I use an out-bound access-list on my local cisco router that deny's all and
> permits the known IP address of the administrator to ports like ssh and the
> admin-web on port 81
> all un-used ports are off and denied at the router, and I use ssh to get
> access.

While this is NOT a bad solution, of course the tradeoff is that if your
route to the server from your IP# ceases to work, you can't get into the
box from an alternate route or IP#.

> So why dont cobalt ship it with ssh instead of telnet or as an option.?
> save us all installing it anyway.

Possibly because of patent issues in the U.S.?

Jeff
-- 
Jeff Lasman <jblists@xxxxxxxxxxxxx>
nobaloney.net
P. O. Box 52672
Riverside, CA  92517
voice: (909) 787-8589  *  fax: (909) 782-0205