Re: FW: [db-wg] Proposal to deprecate CRYPT-PW authorisation in the RIPE Database
-
From: Max Tulyev president@localhost
-
Date: Thu, 05 Oct 2006 21:13:17 +0400
Hi!
My official +1. We need to shut it out as mail-from was.
Vladislav! If you wish to be really constructive - do policy proposal
for shutting down MD5-PW - personally I will vote for that too.
Sascha Lenz wrote:
> Hi,
>
> Potapov Vladislav wrote:
>
>> Hi,
>> -Hank
>>
>>> I think a number of people have pointed out why they wish to deprecate
>>>
>> crypt-pw.
>> No, I'm not convinced. And a number of people - only Gert Doering? The
>> point of view they propagate - it should increase security (in reality -
>> not). But, we all know: false sense of security is worse than knowledge
>> of a problem.
>>
>
> actually i don't care much about this issue, but since you raise the
> question - i have show my support for Gert/the proposal in general here,
> that is, i'm IN FAVOR of the depreciation of CRYPT-PW.
>
> It's not needed, it's more than a litte more insecure than MD5-PW, it
> doesn't change anything operational.
>
> ..and no i'm not going to comment any other side-arguments here, gets
> too personal.
>
> I support the original proposal - full stop.
>
>
--
WBR,
Max Tulyev (MT6561-RIPE, 2:463/253@localhost)
|