Re: Security

From: Paul D. Smith
Subject: Re: Security
Date: 17 Sep 2001 00:14:01 -0400
%% Stevie O <address@hidden> writes:

  so> The method I suggestion is no stronger than pserver is; it simply
  so> makes it harder for someone to sniff the password off the network
  so> (which is incredibly easy to do with the current protocol).  And
  so> the idea is to NOT have to give people login access to my machine
  so> just so they can access the repository.

All you need to do is replace their shell with a little program that
doesn't allow any command except the CVS operations.  You can write a C
program like this in a few lines of code.

