OpenSSH HPN

Micheas Herman m at micheas.net
Wed Nov 11 08:55:38 UTC 2015


On Tue, Nov 10, 2015 at 11:59 PM, John-Mark Gurney <jmg at funkthat.com> wrote:
>
> <snip>
>
> If you have a trusted network, why not just use nc?


Defense in depth for starters.

The ipfw how to guide I learned from years ago, started with the
statement that a
firewall should be a shield in front of machines that don't need the shield.

Security is hard, and you will get it wrong (everyone does),
accidentally exposing
an encrypted stream is much less of a mistake than exposing a plaint
text stream.


>
>
> --
>   John-Mark Gurney                              Voice: +1 415 225 5579
>
>      "All that I will do, has been done, All that I have, has not."
> _______________________________________________
> freebsd-security at freebsd.org mailing list
> https://lists.freebsd.org/mailman/listinfo/freebsd-security
> To unsubscribe, send any mail to "freebsd-security-unsubscribe at freebsd.org"


More information about the freebsd-security mailing list