[AusNOG] Wifi Security and Interception

Mark Andrews marka at isc.org
Wed Jun 9 11:26:03 EST 2010


In message <6855B462D756004D9A700E875EF936B90D05164A at pwkcrkex1.pipe.pwk>, "Beva
n Slattery" writes:
> =20
> 
> > -----Original Message-----
> > From: marka at isc.org [mailto:marka at isc.org]=20
> > > Understand.  But you you have absolutely no control of how people=20
> > > receive them.
> > >=20
> > > [b]
> >=20
> > But ISP's do.  Just turn off unsecured email, there are=20
> > secure alternatives. :-)
> 
> Hehe.  I was referring to the MSA you are obviously using right now :)
> 
> [b]

Received: from drugs.dv.isc.org (drugs.dv.isc.org
        [IPv6:2001:470:1f00:820:214:22ff:fed9:fbdc])
        (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits))
        (Client CN "drugs.dv.isc.org", Issuer "ISC CA" (not verified))
        by farside.isc.org (Postfix) with ESMTP id B4353EEB67;
        Wed,  9 Jun 2010 01:08:16 +0000 (UTC) (envelope-from marka at isc.org)

While I have a old client cert (hence the not verified part), I do
actually verify farside.isc.org's cert and don't proceed if it fails
to verify.

% cat /etc/mail/access
TLS_Srv:farside.isc.org VERIFY
% 
-- 
Mark Andrews, ISC
1 Seymour St., Dundas Valley, NSW 2117, Australia
PHONE: +61 2 9871 4742                 INTERNET: marka at isc.org



More information about the AusNOG mailing list