[H-GEN] What can i use instead of SSHD?

Christopher Biggs chris at stallion.oz.au
Thu Jun 27 02:37:43 EDT 2002


[ Humbug *General* list - semi-serious discussions about Humbug and     ]
[ Unix-related topics. Posts from non-subscribed addresses will vanish. ]

Dan Roe <gremlin at d2.net.au> moved upon the face of the 'Net and spake thusly:

>
> Seems to me like SSH is becoming more insecure than FTP/HTTP/Telnet

I think you just exceeded your recommended daily allowance of exaggeration.

> Today CERT tells me everything but OpenSSH 3.4 is remotly exploitable
> So i suggest you all update your ssh server
> Im wondering what else i could use instead of SSHD

Everything has bugs.   Shit happens.

The SSH bug was only useful in a narrow set of circumstances.  They
were just vague about that because they[1] didn't want to say *which*
circumstances until people had a chance to upgrade.

Turns out none of my systems were vulnerable anyway.


[1] I don't want to wade into the Theo-is-a-dick vs. Theo-is-god
    discussion, I have to work with the OpenBSD people, who are dead
    clever, but a little, um, focused.


--
* This is list (humbug) general handled by majordomo at lists.humbug.org.au .
* Postings to this list are only accepted from subscribed addresses of
* lists 'general' or 'general-post'.  See http://www.humbug.org.au/



More information about the General mailing list