Bugtraq mailing list archives

Re: Firewall-1 Information leak


From: Grzegorz Mucha <grzegorz.mucha () solidex com pl>
Date: Wed, 25 Jul 2001 10:25:17 +0200

Stephen JT Bourike wrote:

Actually, since 4.1 SP-3 the use of Hybrid IKE mode has worked fairly well.
SP-4 fixes some of the outstanding problems and it is now possible to use
strongly-authenticated SecuRemote sessions with IKE encryption and key
exchange.

Sure, but you can use Hybrid Mode for authentication of new sessions but
you still need to use public key (so the CA) or static password
(preshared secret) for getting the network topology to get or update
youre site, because of implementation of internal CA in Management
Module.
Fortunately it changes in NG.

Grzes


Current thread: