Hello,
 The current setup with 6in4 tunnels from tunnelbroker.net is (by default)
leaking auth tokens in cleartext.

If the user instead installs ddns-scripts + curl, they can at least avoid
the cleartext parts ( by editing the scripts, or manually downloading the
CA pack and verifying this )

What can be done to avoid leaking auth tokens for sensitive network things
in cleartext by default?


//D.S.
_______________________________________________
openwrt-devel mailing list
openwrt-devel@lists.openwrt.org
https://lists.openwrt.org/cgi-bin/mailman/listinfo/openwrt-devel

Reply via email to