NODE 531ddf71MS-Mail Security
Leo WONG Wing-yan <wywong2@cs.cuhk.hk>Fri, 28 Jun 1996 04:43:17 +0800
Hi all,
I would like to gather informations of whether the MS-Mail server is
secure or not, is anyone heard of somebody, say, disguise as other user
or read other user e-mail?
Thanks a lot
Best regards
Leo Wong
NODE d983255fRe: MS-Mail Security
gregmi@galileo.mis.net (Greg Miller)Sat, 29 Jun 1996 10:08:23 +0800
On Thu, 27 Jun 1996 23:13:23 +0800 (HKT), you wrote:
> I would like to gather informations of whether the MS-Mail server is
>secure or not, is anyone heard of somebody, say, disguise as other user
>or read other user e-mail?
I haven't looked into it a great deal, but I have forgotten my password
and was able to retreive my mail by deleting the password file and making a new
one.
begin 644 tagline.txt
enum MicrosoftBoolean {TRUE, FALSE, MAYBE};
Greg Miller: Programmer/Analyst (gregmi@mis.net)
http://grendel.ius.indiana.edu/~gmiller/
end.
NODE 205d34f8Re: MS-Mail Security
Adam Shostack <adam@homeport.org>Sun, 30 Jun 1996 03:02:54 +0800
Leo WONG Wing-yan wrote:
| I would like to gather informations of whether the MS-Mail server is
| secure or not, is anyone heard of somebody, say, disguise as other user
| or read other user e-mail?
Its good idea to think of mail security as an end to end
thing; you encrypt the mail for your recipient(s). They decrypt it.
There are (decent) proposals afoot to encrypt mail server to server,
which is fine, it doesn't sacrifice security, and makes accidental
mail reading less likely.
However, I know of two mail servers that I might trust, and
both of them (qmail and smap) come as source code. I wouldn't trust
any MS product with security functions; what happens when it breaks?
SMB was broken for 3 months before it was fixed.
Adam
--
"It is seldom that liberty of any kind is lost all at once."
-Hume