home *** CD-ROM | disk | FTP | other *** search
- Xref: sparky comp.dcom.modems:20033 alt.security:5376
- Newsgroups: comp.dcom.modems,alt.security
- Path: sparky!uunet!ferkel.ucsb.edu!taco!gatech!rpi!ghost.dsi.unimi.it!univ-lyon1.fr!insa-lyon.fr!itesec!frmug!news.alcatel-alsthom.fr!archer
- From: archer@frmug.fr.mugnet.org (Vincent Archer)
- Sender: archer@tcvr67.metal_vx.alcatel-alsthom.fr
- Subject: Re: Caller ID products?
- Message-ID: <19930125.123459.7879@tcvr67.metal_vx.alcatel-alsthom.fr>
- Organization: Alcatel Alsthom Compagnie Internationale du Telephone - Nozay
- References: <1993Jan19.160818.8276@crd.ge.com> <1993Jan20.172626.11028@bernina.ethz.ch> <1993Jan20.221642.6070@sfu.ca>
- Date: Mon, 25 Jan 1993 11:34:59 GMT
- Lines: 28
-
- In article <1993Jan20.172626.11028@bernina.ethz.ch> waldvoge@nessie.cs.id.ethz.ch (Marcel Waldvogel) writes:
- >That's ok for most of us. But, dialling back on the same line as the
- >call came in isn't secure (at least not on analog lines, I don't know
- >about ISDN).
-
- In article <1993Jan20.221642.6070@sfu.ca> howesb@fraser.sfu.ca (Charles Howes) adds:
- >Even if you have a second line, if the cracker knows the second number and
- >how long it will take for the modem to 'think' before dialing, the cracker
- >can then call the second line just as the modem picks it up.
-
- Not so. When you've got a second line, you can make the setup secure by
- having an outdial-only line. Most telecom companies will provide
- limited-acess subscription, with restrictions. One can always get a line
- that cannot be used for incoming calls, but only for calling.
-
- In that kind of setup, your cracker CANNOT call the second line. This line
- has a number, but it's only for internal use, and dialing that number result
- in a nice recorded message telling you that you that this number is
- not-in-use/cannot-access.
-
- That's the next best step to having private virtual phone networks.
-
- Of course, if your cracker can tap the line, then your protection is
- defeated. Then, you need encryption on the line, with all afferent costs,
- and (probably) also a lot of administrative authorisations.
- --
- Vincent Archer Email: archer@frmug.fr.mugnet.org
- Reality is for those who cannot face Science-Fiction.
-