On Sun, 7 Feb 1999, Chris Newman wrote:
> On Thu, 4 Feb 1999, Martin Forssen wrote:
> > Attached below follows a proposal for a new authentication method for
> > SSH2. This new method implements general challenge-response
> > authentication.
> 
> If you do a challenge response mechanism, make it compatible with HTTP
> Digest and the DIGEST mechanism:
> 
>   <http://www.ietf.org/internet-drafts/draft-leach-digest-sasl-01.txt>

I am not really sure that is a good idea since the conditions are quite
different. The draft mentioned above is quite concerned with protecting
the authentication data while on the wire whereas in ssh we already have a
secure channel when authenticating.

        /MaF

Reply via email to