Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 25 Nov 1995 22:39:25 -0800 (PST)
From:      Nathan Lawson <nlawson@statler.csc.calpoly.edu>
To:        lyndon@orthanc.com (Lyndon Nerenberg)
Cc:        security@freebsd.org
Subject:   Re: I wonder how much trouble something like this would be to do? :)
Message-ID:  <199511260639.WAA24634@statler.csc.calpoly.edu>
In-Reply-To: <199511241845.KAA27588@multivac.orthanc.com> from "Lyndon Nerenberg" at Nov 24, 95 10:45:04 am

next in thread | previous in thread | raw e-mail | index | archive | help
> >>>>> "Jordan" == Jordan K Hubbard <jkh@time.cdrom.com> writes:
> 
>     Jordan> Someone sent me this.  It sounds like "one of those really
>     Jordan> simple engineering ideas that marketing got ahold of and
>     Jordan> hyped the heck outta" but still - I can think of more than
>     Jordan> a few MIS managers who'd just eat this up.
> 
> No doubt. I first read about this several (at least three) years
> ago in one of the Usenix Security Conference proceedings. The paper
> described an implementation that had been done for 4.4BSD. I can
> try to dig out a reference if anyone's interested.
 
I believe you are referring to swIPe, an implementation of something like this 
done by Matt Blaze.  Check ftp.csua.berkeley.edu:/pub/cypherpunks/swIPe for 
details.  It is designed for NetBSD and SunOS, but I am sure it's an easy port
to FreeBSD.  The only bad thing about it is that key management is left up to
manual means, but I am sure a quick RSA exchange can be added (along with public
key host authentication).

>     Jordan> The international version is due
>     Jordan> next month. Prices start at $10,000 on Digital Unix and
>     Jordan> comes with DEC's own Firewall Unix, $3,600 on PCs.
> 
> Har dee har har har.

Yes, who ever said that numbers weren't worth good money?

-Nate



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?199511260639.WAA24634>