Security Basics mailing list archives

Re: sshd for windows


From: Ansgar Wiechers <bugtraq () planetcobalt net>
Date: Thu, 19 Jun 2003 01:57:24 +0200

On 2003-06-18 Richard Parry wrote:
theres a builtin telnet server included with win2k (server and
workstation).

Oh yeah, thats the perfect way of breaking into a machine ! Telnet is
plain text, so is very easy to sniff anything that goes on ! I hope
you are being sarcastic !

You do know, that by default Windows is using NTLM authentication for
telnet, don't you? Of course that's not comparable to ssh, but it sure
is a lot better than plaintext authentication.

Regards
Ansgar Wiechers

---------------------------------------------------------------------------
Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts!
The Gartner Group just put Neoteris in the top of its Magic Quadrant,
while InStat has confirmed Neoteris as the leader in marketshare.
     
Find out why, and see how you can get plug-n-play secure remote access in
about an hour, with no client, server changes, or ongoing maintenance.
          
Visit us at: http://www.neoteris.com/promos/sf-6-9.htm
----------------------------------------------------------------------------


Current thread: