Skip to content

Comment on Black Hat 2024: Secure Shells in Shambles [pdf]parent

Comments

Doesn’t wireguard solve the same issue? Crypto key packet authentication?

Same question. Can someone chime in on how deploying this would be different from putting ssh behind wiregaurd? On first glance it looks like if you were ultra paranoid you could put this in front of wiregaurd and not even have to open up a udp port? Would that be an advantage to add a layer to secure wiregaurd against 0day?

Doesn’t wireguard solve the same issue?

Presumably, but my solution is quite a bit older and just a poor man's hack from about 20 years ago ...

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.