From unknown Tue May 19 02:13:25 2026
X-Loop: git-admin@x2go.org
Subject: Bug#34: SSH_OPTIONS_FD
Reply-To: Mike Gabriel <mike.gabriel@das-netzwerkteam.de>, 34@bugs.x2go.org
Resent-From: Mike Gabriel <mike.gabriel@das-netzwerkteam.de>
Resent-To: x2go-dev@lists.berlios.de
Resent-CC: X2Go Developers <x2go-dev@lists.berlios.de>
X-Loop: git-admin@x2go.org
Resent-Date: Di, 25 Sep 2012 08:33:02 +0000
Resent-Message-ID: <handler.34.B34.134856152618657@bugs.x2go.org>
Resent-Sender: git-admin@x2go.org
X-X2Go-PR-Message: followup 34
X-X2Go-PR-Package: x2goclient
X-X2Go-PR-Keywords: 
Received: via spool by 34-submit@bugs.x2go.org id=B34.134856152618657
          (code B ref 34); Di, 25 Sep 2012 08:33:02 +0000
Received: (at 34) by bugs.x2go.org; 25 Sep 2012 08:25:26 +0000
Received: from freya.das-netzwerkteam.de (freya.das-netzwerkteam.de [88.198.48.199])
	by ymir (Postfix) with ESMTPS id 772E45DB15
	for <34@bugs.x2go.org>; Tue, 25 Sep 2012 10:25:26 +0200 (CEST)
Received: from grimnir.das-netzwerkteam.de (grimnir.das-netzwerkteam.de [78.46.204.98])
	by freya.das-netzwerkteam.de (Postfix) with ESMTPS id 5144FAD4
	for <34@bugs.x2go.org>; Tue, 25 Sep 2012 10:25:26 +0200 (CEST)
Received: from localhost (localhost [127.0.0.1])
	by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id 3AD733C106
	for <34@bugs.x2go.org>; Tue, 25 Sep 2012 10:25:26 +0200 (CEST)
X-Virus-Scanned: Debian amavisd-new at grimnir.das-netzwerkteam.de
Received: from grimnir.das-netzwerkteam.de ([127.0.0.1])
	by localhost (grimnir.das-netzwerkteam.de [127.0.0.1]) (amavisd-new, port 10024)
	with ESMTP id mzT7-F6FO0mA for <34@bugs.x2go.org>;
	Tue, 25 Sep 2012 10:25:26 +0200 (CEST)
Received: from localhost (localhost [127.0.0.1])
	by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id 182233C105
	for <34@bugs.x2go.org>; Tue, 25 Sep 2012 10:25:26 +0200 (CEST)
Received: from localhost (localhost [127.0.0.1])
	by grimnir.das-netzwerkteam.de (Postfix) with ESMTP id EF9E63BFE7
	for <34@bugs.x2go.org>; Tue, 25 Sep 2012 10:25:25 +0200 (CEST)
X-Spam-Checker-Version: SpamAssassin 3.3.1 (2010-03-16) on
	grimnir.das-netzwerkteam.de
X-Spam-Flag: NO
X-Spam-Status: No, hits=-2.9 required=5.0 tests=ALL_TRUSTED,BAYES_00
	autolearn=ham version=3.3.1 running as userid=
X-Spam-Level: 
X-Spam-Bayes-Score: 0.0000
Received: by grimnir.das-netzwerkteam.de (Postfix, from userid 33)
	id A22B33C007; Tue, 25 Sep 2012 10:25:25 +0200 (CEST)
Received: from nocatv2.tng.de (nocatv2.tng.de [213.178.75.58]) by
 mail.das-netzwerkteam.de (Horde Framework) with HTTP; Tue, 25 Sep 2012
 10:25:25 +0200
Message-ID: <20120925102525.15264n2buhtuy73p@mail.das-netzwerkteam.de>
X-Priority: 3 (Normal)
Date: Tue, 25 Sep 2012 10:25:25 +0200
From: Mike Gabriel <mike.gabriel@das-netzwerkteam.de>
To: glpk xypron <xypron.glpk@gmx.de>, 34@bugs.x2go.org
Cc: Oleksandr Shneyder <oleksandr.shneyder@obviously-nice.de>
References: <505CC771.20300@gmx.de>
 <handler.34.B34.13482576789462.ackinfo@bugs.x2go.org>
 <505D9F99.10808@gmx.de> <505DA7B4.3030909@informatik.uni-erlangen.de>
 <505F6DDB.1070304@gmx.de> <5060251D.90202@informatik.uni-erlangen.de>
 <20120924132602.316510@gmx.net>
 <50607239.5090308@informatik.uni-erlangen.de> <5060CF1E.20700@gmx.de>
 <5060EA24.7070600@obviously-nice.de> <20120925030819.309160@gmx.net>
In-Reply-To: <20120925030819.309160@gmx.net>
MIME-Version: 1.0
Content-Type: multipart/signed;
 boundary="=_4kbjssnhiid1";
 protocol="application/pgp-signature";
 micalg="pgp-sha1"
Content-Transfer-Encoding: 7bit
User-Agent: Internet Messaging Program (IMP) H3 (4.3.4)

This message is in MIME format and has been PGP signed.

--=_4kbjssnhiid1
Content-Type: text/plain;
 charset=UTF-8;
 DelSp="Yes";
 format="flowed"
Content-Disposition: inline
Content-Transfer-Encoding: 7bit

Hi,

On Di 25 Sep 2012 05:08:19 CEST glpk xypron wrote:

> I am not aware of proxies being contacted over https.

Hmmm... this indeed is true... The feature will mostly be an  
inside-to-outside connection. Hmmm... To get it clear, would we send  
http-proxy authentication strings in cleartext to the proxy server or  
would we send the remote X2Go server credentials to the proxy in  
cleartext.

Sending proxy auth in cleartext probably is common practice (?). Most  
proxy setups do not even need an auth-against-the-proxy.

This feature clearly needs a good documentation so that we do not  
false security alarms on the mailing lists!!!

Mike


-- 

DAS-NETZWERKTEAM
mike gabriel, rothenstein 5, 24214 neudorf-bornstein
fon: +49 (1520) 1976 148

GnuPG Key ID 0x25771B31
mail: mike.gabriel@das-netzwerkteam.de, http://das-netzwerkteam.de

freeBusy:
https://mail.das-netzwerkteam.de/freebusy/m.gabriel%40das-netzwerkteam.de.xfb

--=_4kbjssnhiid1
Content-Type: application/pgp-signature
Content-Description: Digitale PGP-Unterschrift
Content-Disposition: inline
Content-Transfer-Encoding: 7bit

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)

iQIcBAABAgAGBQJQYWp1AAoJEJr0azAldxsx3XwP/2mk6U+jwg/Tf4JWoyXe1VMc
k/1kNr3NjrooexVJ99Gs41NN4kB1bnW6U977mKD/Z/rNp59HhQjGPnqnFDP5guyU
/O6eLRo8HGSShUuIVVDhFTmUXHdXPU1Te4sO1eJPB4xQV5OMl8gCQ9UGf5nU+CyC
OZ8HPWg/xjpxQUn9wMiVanDls8Sim8EO7gw9gBRBSJBbpDNW7L1oBA48UHeh3NCi
QNSJvb406oL4fh88yfTnYERTgCMyrsgFJpTQvjTBa+3NKzGYxb5aGJdhawuXBa6y
JNWQtVmnmvegUOXfaQXJs8CRO9IwMGNY0BJkmnXa0ZqOfxFboZX3qGcB1zbC9W1F
coZb5FBSHPtXi1pMyzZlIXnLDpXozRIo/yR4TZCsR9WKsUJ+U5bOJL0dHVkVGX4c
xT/2ovstGsZNo1ERifAo01aBSJ3JX4Frs/XNvmZADNvKBm9P8RpEfR9Ek5/WzmBq
x9BuQc11trityOpnFVwF3jqQMhOBW5Payj2IJ32b37pClzfEQ5GSuNTl08YLpQSf
9ZGf7XTFIfjCU0qXqznzlRSZVw02oJZEOeGYdUfXw+03VmLkISqt9dGZZFodQglH
maW5Crwnx2sSSwLxef3lINIM9U2ECaXQt84ddnD8QxYlBt3eB0as5oTviLXEExjk
0LXmrThOPlGEt7YUXxQk
=MQoZ
-----END PGP SIGNATURE-----

--=_4kbjssnhiid1--
