Re: German state gov. dicthing Windows for Linux, 30k workers migrating.

Liste des GroupesRevenir à se design 
Sujet : Re: German state gov. dicthing Windows for Linux, 30k workers migrating.
De : blockedofcourse (at) *nospam* foo.invalid (Don Y)
Groupes : sci.electronics.design
Date : 09. Apr 2024, 20:13:41
Autres entêtes
Organisation : A noiseless patient Spider
Message-ID : <uv40gs$cgom$3@dont-email.me>
References : 1 2 3 4 5 6 7 8 9
User-Agent : Mozilla/5.0 (Windows NT 6.1; Win64; x64; rv:102.0) Gecko/20100101 Thunderbird/102.2.2
On 4/9/2024 11:12 AM, Don Y wrote:
On 4/8/2024 8:53 AM, Don Y wrote:
You also would be surprised at how much information "leaks" from naive
encoding strategies.  E.g., if you know (or suspect) the format of the
content, you can often deduce the coding algorithm.
 This is my all-time favorite -- laughable -- take on "security":
 <https://community.hpe.com/hpeb/attachments/hpeb/hpsc-46/6970/1/UserGuide.pdf>
 This is (was) *sold* as "Secure Web Console".
 By a "reputable" company with very deep pockets!
 The product idea was excellent!  Provide a means of accessing the
serial console on a remote computer over the internet.  So, you could
troubleshoot boot problems and other issues in cases where the
server/host in question hadn't yet booted *or* had lost IP connectivity.
 Essentially, you build a one-port terminal server and glue a web server
on the outfacing side.  An administrator can then access the web server
(from any web client) and have his keystrokes passed through to the
attached serial console and the output from said console painted into
his web browser's display.
 Easy peasy!
 But, the data stream is naively "encrypted" with a simple substitution cipher.
The cipher is stateless so characters can be decoded without regard for where
in the data stream they are encountered.  (i.e., a packet sniffer's paradise).
 And, the decode operation is:
    chat cleartext = crypttext ^ 0x37;
Grrrr... s/chat/char/

Seriously?  What *idiot* thought to put "Secure" in the product's title???
 ("I locked my front door -- and put the key under the mat so I would
always know where I had left it...")
 

Date Sujet#  Auteur
6 Apr 24 * German state gov. dicthing Windows for Linux, 30k workers migrating.19Jan Panteltje
6 Apr 24 +- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1Don
6 Apr 24 `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.17Cursitor Doom
7 Apr 24  +* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.7Jan Panteltje
7 Apr 24  i`* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.6Cursitor Doom
7 Apr 24  i `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.5Jan Panteltje
7 Apr 24  i  `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.4Cursitor Doom
8 Apr 24  i   +* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.2Jan Panteltje
9 Apr 24  i   i`- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1Cursitor Doom
8 Apr 24  i   `- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1Jan Panteltje
7 Apr 24  `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.9Liz Tuddenham
7 Apr 24   +* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.6Don Y
8 Apr 24   i`* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.5Liz Tuddenham
8 Apr 24   i `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.4Don Y
8 Apr 24   i  +- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1John Larkin
9 Apr 24   i  `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.2Don Y
9 Apr 24   i   `- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1Don Y
8 Apr 24   `* Re: German state gov. dicthing Windows for Linux, 30k workers migrating.2Joe Gwinn
8 Apr 24    `- Re: German state gov. dicthing Windows for Linux, 30k workers migrating.1Don Y

Haut de la page

Les messages affichés proviennent d'usenet.

NewsPortal