Slashdot Mirror


OpenSSH 4.2 released

BSDForums writes "OpenSSH 4.2 has been released. OpenSSH is a 100% complete SSH protocol version 1.3, 1.5 and 2.0 implementation and includes sftp client and server support. Changes since OpenSSH 4.1 include security bug fixes relating to GatewayPorts, and GSSAPI, which eliminates the risk of credentials being inadvertently exposed to an untrusted user/host. A new compression method, proactive changes for signed vs. unsigned integer bugs, and many additional bugfixes and improvements highlight this release."

3 of 183 comments (clear)

  1. Alternative to X - NX by La+Gris · · Score: 0, Offtopic

    You realy should have a look a FreeNX http://freshmeat.net/projects/freenx/>
    FreeNX Server is the Free and GPL'd NX server implementation by Fabian Franz, based on NoMachine.com's NX technology. NoMachine have thankfully licensed the core of NX under the GPL (they provide a close-source commercial NX server product on top of that code, as well as professional support).

    The NX protocol let you use remote X display while connected by low bandwidth lines. It require much less bandwith than raw X or X over compressed ssh.

    --
    Léa Gris
  2. Re:Why you shouldn't use OpenSSH by Elektroschock · · Score: 1, Offtopic

    wikipedia article "After de Raadt stated his disapproval of the U.S.-led occupation of Iraq in an interview with Toronto's Globe and Mail, a multi-million-dollar US Department of Defense grant to the University of Pennsylvania's POSSE project was cancelled, effectively ending the project. Funding from the grant had been used in the development of OpenSSH and OpenBSD, as well as many other projects and was to be used to pay for the hackathon planned for the May 8, 2003. Despite money from the grant already having been used to secure accommodations for 60 developers for a week, the money was reclaimed by the government at a loss and the hotel told to not allow the developers to pay the reclaimed money to resecure the rooms. This resulted in criticism among some that the US military held an anti-free speech attitude."

    What's bad about doing THE RIGHT THING? Even if you have to pay the price. This is what we want from a security specialist.

    Is this solution secure? -->
    specialist: Well, blabla...quantum computing...
    marketing guy: Absolutely!

    Go to Iraq? --> ...

    A trustful security specialist has to tell you the truth. Diplomacy serves stupidity and insecurity.

    Military systems want "loyality", they do not want you to talk about problems, they want you to report that everything's fine. Because when you talk about problems it means work for them. That is why they fail, why they are dysfunctional from an organisational perspective. Dictorship simply means: organise the state like the military system. but the fact is: Problems make life intresting. Problems are no shame. Shutting down discussions about them does not solve them. Think negative!

  3. Re:Which idiot makes this insightfull? by Homology · · Score: 0, Offtopic
    So we must stop using one of the worlds best security software because somebody does not like Theo de Raadt?

    Are you mod fucking insane?

    There are also many moderators that abuse the moderation system by modding down posts they don't agree with. It's so rampant that I usually meta moderate troll/flamebait as unfair.