info-cvs
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Linux security issues as they pertain to CVS


From: Thornley, David
Subject: RE: Linux security issues as they pertain to CVS
Date: Tue, 29 May 2001 09:18:33 -0500

> -----Original Message-----
> From: address@hidden [mailto:address@hidden
> Sent: Friday, May 25, 2001 7:48 PM
> To: Mark
> Cc: CVS Mailing List
> Subject: Re: Linux security issues as they pertain to CVS
> 
> 
> The problem is that pserver cannot be made secure.  Literally cannot.
> It runs on a raw, insecure TCP circuit and is subject to all kinds of
> man-in-the-middle attacks, connection hijacking, spoofing, etc.
> 
Any problems with running pserver over an encrypted channel?  It seems to
met that would be just as secure as ssh access (and, of course, just as
unsafe - the biggest potential security problems being the guys on both
ends of the channel).
 



reply via email to

[Prev in Thread] Current Thread [Next in Thread]