In message <19990710155721.c57...@holly.dyndns.org> Chris Costello writes:
:    The whole point of ident was -- and still is -- to
: authenticate or verify who created a specific TCP connection.

NO.  The IDENT protocol was never intended to authenticate who was on
the other end.  *NEVER*.  People ABUSED it as such, but its value is
only as good as the person providing the information.

: If
: the machine is untouched (i.e., has not had the root account
: compromised), then ident responses are usually trustworthy
: enough.  It is generally not applicable to single user operating
: systems like Windows, Mac OS, or DOS.

FALSE.  If I can hit the remote side faster than the machine that is
untouched with a response (by sniffing the packets on a network and
heavily loading the machine that I'm attacking from, but haven't
penetrated root), then the information is bogus as well.

At best, the information provides who might be on the other end of the
end of the link...

Warner


To Unsubscribe: send mail to majord...@freebsd.org
with "unsubscribe freebsd-hackers" in the body of the message

Reply via email to