LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices

Reply
 
LinkBack Search this Thread
Old 03-29-2003, 06:06 AM   #1
Q*Bert
Member
 
Registered: Feb 2003
Location: Birmingham, UK
Distribution: Redhat 8.0, Immunix 7.0 a few others
Posts: 222

Rep: Reputation: 30
Telnet is insecure but ...


If you use a mailbox checker like Inbox Monitor,you're exposing youself equally. It still send your username and password in clear text! Every 10 minutes! (or whatever you've configured it for).

Is there a secure version of the Inbox Monitor anywhere? i.e. using the ssh channel for encypting the password?
 
Old 03-29-2003, 11:46 AM   #2
Crashed_Again
Senior Member
 
Registered: Dec 2002
Location: Atlantic City, NJ
Distribution: Ubuntu & Arch
Posts: 3,503

Rep: Reputation: 57
I'm not too familiar with Inbox Monitor but a lot of mail clients have an SSL option if the mail server allows it.
 
Old 03-29-2003, 01:21 PM   #3
Q*Bert
Member
 
Registered: Feb 2003
Location: Birmingham, UK
Distribution: Redhat 8.0, Immunix 7.0 a few others
Posts: 222

Original Poster
Rep: Reputation: 30
Yeah, I'm aware of plenty of MTAs that have the SSL functionality.

Isn't this another case of a glaring security flaw stemming from an olde world PDP-11 longhaired "why would anyone want to break in anyway?" mentality.

My mind boggles. Design a secure alternative to telnet and then allow a mail monitor to circumvent it. Gah!

Q*Bert
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
X11 Forwarding...insecure? Vgui Linux - Security 4 11-24-2005 05:41 PM
is pserver (CVS) insecure? bschiett Linux - Newbie 3 03-29-2005 03:52 AM
Port 6667 insecure? Scytale Linux - Security 8 05-23-2003 01:56 PM
/etc/exports: insecure meshcurrent Linux - Security 2 03-16-2003 04:01 AM
Netscape6.2 insecure? LabRad Linux - General 2 04-15-2002 12:42 PM


All times are GMT -5. The time now is 04:45 PM.

Main Menu
 
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
identi.ca: @linuxquestions
Facebook: @linuxquestions
Open Source Consulting | Domain Registration