On 27 Sep 1996 14:37:33 -0700, in listas.firewalls you wrote:
>Well, one addition. With standard POP, the password is sent cleartext. =20
>It would be nice to find a way to establish a secure encrypted chanel=20
>before the password is sent. This would entail some sort of SSL POP=20
>client (or something similar).
Doesn´t APOP solve this (not sending password in the clear)?
The process would be:
- Server listens on SMTP (25)
- Sorts out recipient and encrypts with public key before placing in
/var/spool/mail
- Client authenticates through APOP
- POP server sends mail (encrypted) to client
- Client software decrypts with private key (perhaps automagically?)
how does this sound?
>Greg
>
>--------------------
>Greg Whalin
>gwhalin @
numerix .
com
Fernando
--
Fernando da Silveira Montenegro mailto:silveira @
nutec .
com .
br
Novas Tecnologias http://www.nutec.com.br
Nutec Informatica
Sao Paulo, SP, Brazil #include <std_disclaimer.h>
Follow-Ups:
|
|