Great Circle Associates Firewalls
(November 1996)
 

Indexed By Date: [Previous] [Next] Indexed By Thread: [Previous] [Next]

Subject: Re: pop mail server in ssn
From: lists @ lina . inka . de (Bernd Eckenfels)
Date: Sat, 23 Nov 1996 17:54:01 +0100 (MET)
To: alkl . pt @ cemtecasia . com . sg (Albert)
Cc: Firewalls @ GreatCircle . COM
In-reply-to: <96Nov23 . 202605sst . 15117 @ ssy . cemtecasia . com . sg> from "Albert" at Nov 23, 96 08:18:00 pm

Hi,

> Is there any security loop holes that may exist if this is implemented?

If you dont use APOP your POP Passwords can be sniffed. Even if you use APOP
all the mails polled via POP can be sniffed. If your POP password will be
sniffed and is equal to some sort of login password you may get problems,
too.

Greetings
Bernd


References:
Indexed By Date Previous: Re: DMZ design
From: "John H. Gilley" <jgilley @ ix . netcom . com>
Next: Re: DMZ
From: "Daniel J Blander - Sr. Systems Engineer for ACS" <Daniel . Blander @ ACSacs . Com>
Indexed By Thread Previous: pop mail server in ssn
From: Albert <alkl . pt @ cemtecasia . com . sg>
Next: Firewalls-Digest V5 #630 -Reply
From: Colin Craig <craigc @ scot-homes . gov . uk>

Google
 
Search Internet Search www.greatcircle.com