Firewall Wizards mailing list archives

Re: sms and adsm over firewalls


From: Neil Ratzlaff <Neil.Ratzlaff () ucop edu>
Date: Mon, 07 Jun 1999 13:25:15 -0700

At 07:41 AM 6/7/99 -0700, you wrote:
Date: Fri, 4 Jun 1999 18:38:19 +0100
From: Antonomasia <ant () notatla demon co uk>
To: firewall-wizards () nfr net
Subject: Re: sms and adsm over firewalls
Sender: owner-firewall-wizards () nfr net
Reply-To: Antonomasia <ant () notatla demon co uk>

Matthew_S_Cramer () armstrong com:

Using ADSM on an unprotected network is dangerous.  From what I understand
anyone can fire up the client and restore files to an unprotected
server as it
authenticates using just the IP address and maybe a weak password.  I
don't
allow ADSM across my firewall.


Comment from someone (not me!) who has recently set up IBM ADSM:

ADSM password is not sent in clear over the network, and the server uses 
kerberos like unique session key and algorithm
during sessions with clients.  It would be almost impossible to capture
ADSM password over the network and decrypt it according to the ADSM
developers.



Current thread: