security

James A. Donald jamesd at echeque.com
Wed Oct 25 00:17:21 UTC 2006


     --
Alaric Dailey wrote:
 > To prevent a MITM attack when using SSH, you have to
 > validate the key fingerprint manually.

No you do not.

When the relationship is just starting, there is little
to protect.

     --digsig
          James A. Donald
      6YeGpsZR+nOTh/cGwvITnSR3TdzclVpR0+pr3YYQdkG
      G2ZvxUhs0FPI0ELn5hkWmXRqgZ6mh3GOHNnspNhR
      4IHC2hBA9enJY0v1X5a33kUd4/bQxkmn/TrY38Zgv



More information about the general mailing list