Mailing-List: contact cygwin-help AT cygwin DOT com; run by ezmlm List-Subscribe: List-Archive: List-Post: List-Help: , Sender: cygwin-owner AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com Delivered-To: mailing list cygwin AT cygwin DOT com Mail-Followup-To: cygwin AT cygwin DOT com To: cygwin AT cygwin DOT com From: Alejandro Lopez-Valencia Subject: Re: Problems with OpenSSH in win32. Date: Mon, 29 Mar 2004 18:58:35 -0500 Organization: =?ISO-8859-1?Q?Casa_de_cuc=FA?= Lines: 35 Message-ID: <2abh6053ie0roap5gic7gj06bhbv6ltm7p@4ax.com> References: <1080577821 DOT 40684f1dcf701 AT www DOT gobernalia DOT com> <1080586177 DOT 40686fc133301 AT www DOT gobernalia DOT com> <52pg60pl8pqjhh7c0mk3orb8qmk2eks4lr AT 4ax DOT com> <406875ED DOT 4020904 AT cfl DOT rr DOT com> <40689A7F DOT 8040403 AT cfl DOT rr DOT com> Mime-Version: 1.0 Content-Type: text/plain; charset=ISO-8859-1 Content-Transfer-Encoding: 8bit X-Complaints-To: usenet AT sea DOT gmane DOT org Keywords: none at all X-Gmane-NNTP-Posting-Host: 200.119.70.134 Mail-Copies-To: never X-Archive: encrypt X-Newsreader: Forte Agent 2.0/32.646 Reply-To: cygwin AT cygwin DOT com On Mon, 29 Mar 2004 16:51:59 -0500, Brian Chase wrote in <40689A7F DOT 8040403 AT cfl DOT rr DOT com>: >Alejandro Lopez-Valencia wrote: > > And >> that's the reason why I suggested TightVNC, performance is acceptable >> with a 56K modem link, and it defaults to using SSH tunneling, so for >> practical purposes you obtain a cheap VPN. >> >Are you sure of this statement? The reading I have done on TightVNC >tells me it encrypts passwords only and doesn't have any SSH >capabilities. I'd be happier if I were not correct, but I'd like to read >some documentation proving me wrong to confirm it. > I was thinking of the Unix version, which can be integrated with SSH to do encrypted port tunneling by default. The Windows server is weaker in this respect and requires a lot more hand-holding. There, compile the Unix version of the server under Cygwin and we are on-topic again. :-) As Ross Boulet has pointed out, encrypted port forwarding is a feature of SSH and can be used to create tunnels for any other TCP/IP protocol; or you could create a SSL tunnel with stunnel. What makes TightVNC suitable for tunneling over an encrypted channel is its data compression protocol (JPEG), which is much better than the one used by SSH (zlib). -- Alejandro López-Valencia http://dradul.tripod.com/ [...] every educated man is a theologian, and he doesn't need faith to be one. (J.L. Borges) -- Unsubscribe info: http://cygwin.com/ml/#unsubscribe-simple Problem reports: http://cygwin.com/problems.html Documentation: http://cygwin.com/docs.html FAQ: http://cygwin.com/faq/