home *** CD-ROM | disk | FTP | other *** search
- Path: sparky!uunet!munnari.oz.au!manuel.anu.edu.au!coombs!phone
- From: phone@coombs.anu.edu.au (matthew green)
- Newsgroups: alt.irc
- Subject: Re: user@host faking.
- Date: 28 Dec 92 09:24:59 GMT
- Organization: Australian National University
- Lines: 24
- Message-ID: <phone.725534699@coombs>
- References: <1992Dec26.023224.27417@njitgw.njit.edu>
- NNTP-Posting-Host: 150.203.76.2
-
- lcm1501@hertz.njit.edu (Lawrence C. Mc Abee) writes:
-
-
- > Since the patriot thread strted this, I thought I would bring it up
- > in a seperate thread. Faking of users user@id's on irc is an aannoying and
- > potentially dangerous action. I would hope other admins would update
- > their server to the 2.7.2gID server that uses authd. Actually, I would
- > hope other server opers/admins would take the stance that we at hertz.njit.edu
- > have taken. We allow NO user tampering of user@id's. This seems obvious to
- > us as a way to make users a little more responsible for their acts.
-
- Blah.. there is a big difference between faking user@ and @host.... If you
- are on a machine that doesn't run authd, etc, then there is no way to
- actually work out WHO is coming from that connection, on the remote side.
- It is extremely simple to fake username infact... as to faking hostname..
- well, there are several ways to do it.. but none of them are at all easy..
-
- Why should a server admin compile ircd with auth defined, if the sites that
- mainly use his server don't run authd..?? The "!id" is rather offensive to
- some.. and in some cases it isn't nessicary..
-
- ..
-
- say NO to non-local operator KILLS..
-