Full Disclosure mailing list archives

RE: SSH vs. TLS


From: "Ng, Kenneth (US)" <kenng () kpmg com>
Date: Tue, 29 Jun 2004 12:30:12 -0500

Today this is a straw man arguement.  You can tunnel practically anything
over any protocol.  I've seen NFS tunneled over EMAIL.  Yes, when you type
"ls" the NFS request packet gets UUENCODED into an email, sent over
sendmail, fed into a decoder and routed back into NFS, and then back.  A few
seconds later and you get a directory listing.  And frankly, I'm not sure
you want to know what besides http really goes over port 80.

-----Original Message-----
From: full-disclosure-admin () lists netsys com
[mailto:full-disclosure-admin () lists netsys com]On Behalf Of
dante () forethought net
Sent: Tuesday, June 29, 2004 11:20 AM
To: full-disclosure () lists netsys com
Subject: [Full-disclosure] SSH vs. TLS

Has anyone had experience with TLS Telnet?
[edit]

- SSH allows tunneling other protocols, circumventing firewall policies.

[edit]





*****************************************************************************
The information in this email is confidential and may be legally privileged.
It is intended solely for the addressee. Access to this email by anyone else
is unauthorized. 

If you are not the intended recipient, any disclosure, copying, distribution
or any action taken or omitted to be taken in reliance on it, is prohibited
and may be unlawful. When addressed to our clients any opinions or advice
contained in this email are subject to the terms and conditions expressed in
the governing KPMG client engagement letter.         
*****************************************************************************

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: