Subject: Re: sshd config?
To: John Hawkinson <jhawk@MIT.EDU>
From: mouss <usebsd@free.fr>
List: tech-userlevel
Date: 11/29/2003 13:36:58
While I do understand that "none" makes ssh unsecure, and may cause a 
misplaced sense of security, I prefer to have the option available. 
After all, even with null crypto, ssh is no worse than rlogin and 
friends (unless I am missing atrick here?).

regards,
mouss


John Hawkinson wrote:
> My [possibly flawed] understanding is that using 'none' causes
> authentication to be insecure, not just encryption. So not only might
> it compromise the current transaction, it could compromise future
> transactions.
> 
> --jhawk
> 
>