Subject: Re: CVS commit: cryptosrc-us
To: None <fair@netbsd.org>
From: Bill Sommerfeld <sommerfeld@orchard.arlington.ma.us>
List: source-changes
Date: 01/28/2000 08:17:06
Erik,

> Log Message:
> Use the host's canonical name to make Kerberos happy when telnet'ing
> into a cluster of machines through one round-robin name.
> Fixes PR 6918

This change introduces a potential security vulnerability (due to DNS
spoofing) and should be backed out until we include a secure resolver.

					- Bill