PTR checks for ssh on call-in is stupid.

But, putting ssh host keys in the DNS and not having to do that 'are you
sure? are you sure? are you sure?' dance from "Father Ted" is not stupid.


On Tue, Nov 11, 2014 at 5:48 PM, Lee Howard <l...@asgard.org> wrote:

> Many SSH servers (by default) reject connections from IP addresses without
> PTRs.
> This is stupid.
>
> I heard applause during the WG meeting in response to these statements;
> sounded like consensus to me. I said I would check that consensus on list.
>
> Thanks,
> Lee
>
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>
_______________________________________________
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop

Reply via email to