[Asterisk-Dev] iax2 RSA authentication

Duane digium at aus-biz.com
Mon Mar 15 07:15:19 MST 2004


Olle E. Johansson wrote:
>   Even though not using a passphrase for the key is a security risk, I 
> don't want
>   asterisk to wait for keyboard input after a power failure.

I think that would be the least target, there would be thousands upon 
thousands of web servers using ssl certificates without pass phrases, 
chances are if someone cracks your server you have more to worry about 
then a potential man in the middle attack...

-- 
Best regards,
  Duane

http://www.cacert.org - Free Security Certificates
http://www.nodedb.com - Think globally, network locally
http://www.sydneywireless.com - Telecommunications Freedom
http://happysnapper.com.au - Sell your photos over the net!



More information about the asterisk-dev mailing list