@Holger: yes --- I just  noticed it too.

I humbly suggest that Canonical or Redhat help the vino developers to
add a more common encryption type to the vino server. It is the default
(and the facto only) remote vnc server in our system, and in its current
state forces everyone to connect **in clear** on the local network. All
what you type is sent as is.

I have worked around it wrapping the thing in a SSH tunnel, but still,
it's sensible to local attacks and I think it's not a solution for the
average user.

@Sebastian, I am not sure if this is a security thing --- after all,
before the switch, all the connections were silently made without
encryption, but it's scary nevertheless --- sniffing for traffic on port
5900 is easy enough.

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1281250

Title:
  VNC accessible for Windows machines only with encryption disabled

To manage notifications about this bug go to:
https://bugs.launchpad.net/vino/+bug/1281250/+subscriptions

-- 
ubuntu-bugs mailing list
ubuntu-bugs@lists.ubuntu.com
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to