SRP unencumbered license statement

Tom Wu tom at arcot.com
Thu May 3 12:01:24 EST 2001


Tom Holroyd wrote:
> 
> Not to mention that it provides strong authentication of both client *and*
> server, even when the host key has changed or is unknown, and it doesn't
> leak any information to eavesdroppers or MITM.  :-)
> 
> So, SRP is ready to go.
> 
> Speaking of which, an up-to-date tarball and patch are available:
> 
> http://members.tripod.com/professor_tom/archives/OpenSSH-2.9p1-srp7.tar.gz
> http://members.tripod.com/professor_tom/archives/OpenSSH-2.9p1-srp7.patch.gz
> 
> The patch is vs. the 20010501 CVS, the tarball is self-contained (remember
> to left-click on those links to download the files from Tripod).  See the
> README.SRP file for more info and installation instructions.

The patches look really good.  Everything built right out of the box on
Linux (glibc 2.1) and FreeBSD 4.2.  The only hiccup was the strict
permissions checking on /etc/tpasswd.conf, but that was easily
resolved.  Interoperation with EPS stuff looks clean.

> Dr. Tom Holroyd
> "I am, as I said, inspired by the biological phenomena in which
> chemical forces are used in repetitious fashion to produce all
> kinds of weird effects (one of which is the author)."
>         -- Richard Feynman, _There's Plenty of Room at the Bottom_

Tom
-- 
Tom Wu
Principal Software Engineer
Arcot Systems
(408) 969-6124
"The Borg?  Sounds Swedish..."



More information about the openssh-unix-dev mailing list