OPIE considered insecure

Rich Healey healey.rich at itreign.com
Mon Mar 2 16:32:57 PST 2009



-----Original Message-----
From: owner-freebsd-security at freebsd.org
[mailto:owner-freebsd-security at freebsd.org] On Behalf Of Chris Palmer
Sent: Monday, 2 March 2009 1:14 PM
To: freebsd-security at freebsd.org
Subject: Re: OPIE considered insecure

Rich Healey writes:

> I'm thinking about implementing OPIE, but after reading this I'm not so
> sure. What's consensus on the best approach to one time logins?

Why are people logging into their remote servers from assumed-untrustworthy
clients at all?
_______________

Because a truly secure machine (ie one that's switched off) isn't much use
to me.



More information about the freebsd-security mailing list