ftp using .rhosts or rhsts.equiv

Guy Harris guy at auspex.UUCP
Sat Dec 16 09:43:40 AEST 1989


>For security, ftp should use a privileged port to connect to the daemon,
>and ftpd should check that the foreign port is privileged.  This prevents
>users from spoofing with "telnet <host> 20".

Well, some users, anyway.  Not all OSes in the known universe prevent
non-privileged users from using certain port numbers (and some of those
that don't may even have TCP/IP and TELNET implementations).



More information about the Comp.unix.wizards mailing list