Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: [tlug] SSH Issues
- Date: Tue, 25 Nov 2008 18:50:59 +0900
- From: Edward Middleton <emiddleton@example.com>
- Subject: Re: [tlug] SSH Issues
- References: <871vx9o5b1.fsf@xemacs.org> <20081118112601.GC2893@smtp.office.cynic.net> <87y6zgmr1o.fsf@xemacs.org> <20081121111614.GA26444@lucky.cynic.net> <87abbtkxlo.fsf@xemacs.org> <20081124014523.GH17040@lucky.cynic.net> <87prklk32w.fsf@xemacs.org> <87myfpk1jh.fsf@xemacs.org> <20081124114512.GF25364@smtp.office.cynic.net> <87iqqdjeae.fsf@xemacs.org> <20081124234132.GD10406@lucky.cynic.net> <877i6sjx26.fsf@xemacs.org> <492B878C.5060909@bebear.net> <87vduci5os.fsf@xemacs.org>
- User-agent: Thunderbird 2.0.0.17 (X11/20080929)
Stephen J. Turnbull wrote: > Edward Middleton writes: > > > I guess the question is whether it is worth using SSL at all in > > situations where self signed certificates are used. If you considering > > that a standard SSL certificate cost about $20 a year, and just running > > SSL requires significantly more system resources the benefits of running > > a non-authenticated server seem pretty minimal. > > Of course. However, as Curt[1] correctly points out (and I missed his > meaning), it's not just a matter of *you* running an authenticated > server, it's a matter of me checking the certs and paying attention to > warning from the TLS layer. > As I think you pointed out earlier in relation to the MacPorts site, you won't get warnings if SSL is setup correctly[1]. The point of adding CA certs to the browser is so that it can perform server authentication automatically without user intervention. Thats not to say there aren't some fatal flaws with PKI used in SSL (particularly in dealing with compromised private keys) but it is seamless with most browsers if the server is setup correctly. Obviously non-authenticated connection provides some utility in your situation but it is to security what a sheet of newspaper is to shelter. Edward 1. the exception being if you have setup to warn on connecting to a secure site.
- References:
- [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Curt Sampson
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Curt Sampson
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Curt Sampson
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Curt Sampson
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Curt Sampson
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
- Re: [tlug] SSH Issues
- From: Edward Middleton
- Re: [tlug] SSH Issues
- From: Stephen J. Turnbull
Home | Main Index | Thread Index
- Prev by Date: Re: [tlug] SSH Issues
- Next by Date: Re: [tlug] Trouble with external USB hard disk: GUI admin tool intrigue: Give URL of image
- Previous by thread: Re: [tlug] SSH Issues
- Next by thread: Re: [tlug] SSH Issues
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links