Great Circle Associates Firewalls
(July 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: Fw: Remote Access Software
From: C Matthew Curtin <cmcurtin @ research . megasoft . com>
Date: Tue, 30 Jul 1996 07:17:35 -0400
To: "LAN Administrator" <bcislan @ txdirect . net>
Cc: <firewalls @ GreatCircle . COM>
In-reply-to: <199607251830 . NAA08522 @ legend . txdirect . net>
References: <199607251830 . NAA08522 @ legend . txdirect . net>
Reply-to: cmcurtin @ research . megasoft . com

>>>>> "jlb" == LAN Administrator <bcislan @
 txdirect .
 net> writes:

jlb> We are researching a product called Ascend Max used in
jlb> cooperation with Security Dynamics SecurID and it looks very
jlb> good. Pretty expensive but very secure.

Is SecurID an encrypted link? It's foggy-memory-time, but don't they
just do hand-held authenticator things, or am I thinking of someoen
else.

Anyway, hand-held authenticators are only good for passive attacks
like sniffing. Given the relative ease with which someone can turn
sniffing into session hijacking, cleartext one-time passwords aren't
very useful. I would dismiss the product unless it has the ability for
encrypted links, like SSH or STel.

-- 
C Matthew Curtin        MEGASOFT, LLC        Director, Security Architecture
I speak only for myself.  Don't whine to anyone but me about anything I say.
Hacker Security Firewall Crypto PGP Privacy Unix Perl Java Internet Intranet
cmcurtin @
 research .
 megasoft .
 com http://research.megasoft.com/people/cmcurtin/


Follow-Ups:
References:
Indexed By Date Previous: Re: Re[2]: Ascend pipeline products.
From: C Matthew Curtin <cmcurtin @ research . megasoft . com>
Next: Re: HTTP Server and Mail Server
From: C Matthew Curtin <cmcurtin @ research . megasoft . com>
Indexed By Thread Previous: Fw: Remote Access Software
From: "LAN Administrator" <bcislan @ txdirect . net>
Next: Re: Fw: Remote Access Software
From: David Miller <isdmill @ gatekeeper . ddp . state . me . us>

Google
 
Search Internet Search www.greatcircle.com