From mboxrd@z Thu Jan 1 00:00:00 1970 Message-ID: Date: Thu, 21 Jul 2005 12:23:29 -0400 From: Russ Cox To: Fans of the OS Plan 9 from Bell Labs <9fans@cse.psu.edu> Subject: Re: [9fans] First-timer help In-Reply-To: <4878.1121962344@piper.nectar.cs.cmu.edu> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: quoted-printable Content-Disposition: inline References: <4878.1121962344@piper.nectar.cs.cmu.edu> Topicbox-Message-UUID: 6d470f22-ead0-11e9-9d60-3106f5b1d025 > What's the nature of the interaction between factotum and the > auth server? If somebody who owns the network can interpose > themselves between you and the auth server, can they end up > with your password, or at least authenticate once as you? no. of course, if they can interpose between you and the=20 file server then they can probably hijack the connection after you've authenticated. russ