Welcome to the MacNN Forums.

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

You are here: MacNN Forums > Software - Troubleshooting and Discussion > macOS > SSH Gurus out there??

SSH Gurus out there??
Thread Tools
kwork
Fresh-Faced Recruit
Join Date: Oct 1999
Status: Offline
Reply With Quote
Oct 5, 2005, 11:27 AM
 
I have an SSH server on my mac at home and connect to it through my work PC. I know with SSH the data sent over the internet is encrypted but where does the encryption start? i.e. if I use a web browser that is tunneled through ssh, is the url and the home ip completely encrypted?

They block all of the streaming media here at work I am wondering if I streamed media through my ssh tunnel would they be able to block my home ip address and shut me down completely?

thanks,
     
rwhiffen
Junior Member
Join Date: Dec 2000
Location: Arlington, VA - USA
Status: Offline
Reply With Quote
Oct 5, 2005, 04:00 PM
 
The SSH encrypts the entire packet payload. So they will have no visiblity into what the conversations inside the SSH tunnel are. Which doesn't mean they can't block your home IP, it just means they would have no idea what you were sending to and from your home IP other than encrypted data. Keep in mind this is considered circumventing security so if you have a clause in your HR policy about it, you can get fired for this.

Cheers,

Rich
     
legacyb4
Mac Elite
Join Date: May 2001
Location: Vancouver
Status: Offline
Reply With Quote
Oct 5, 2005, 04:29 PM
 
While the data is encrypted, they'd notice a higher than normal flow of data going through the network (streaming versus simply an open SSH connection) and begin to wonder why that was.

Also, depending on what your terms are on your home connection, you'd start to crunch through bandwdith pretty quickly if you did this all the time.
Macbook (Black) C2D/250GB/3GB | G5/1.6 250GBx2/2.0GB
Free Mobile Ringtone & Games Uploader | Flickr | Twitter
     
Tesseract
Grizzled Veteran
Join Date: Apr 2002
Location: california
Status: Offline
Reply With Quote
Oct 5, 2005, 09:01 PM
 
The IP address of the machine you SSH into is not (and cannot be) encrypted, since routers must know where to send the encrypted data. Everything else, including the URL you are accessing and even the nature of the connection (Web, email, etc) is 'inside' the SSH tunnel and therefore encrypted.

Your browser will probably not perform DNS lookups through the tunnel, so 'they' could see what domain names you are performing DNS lookups on. If they notice that there are DNS lookups of blocked sites closely followed by bursts of SSH traffic, they might put two and two together. This would require a pretty observant network admin though.
     
   
 
Forum Links
Forum Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Top
Privacy Policy
All times are GMT -4. The time now is 04:28 AM.
All contents of these forums © 1995-2017 MacNN. All rights reserved.
Branding + Design: www.gesamtbild.com
vBulletin v.3.8.8 © 2000-2017, Jelsoft Enterprises Ltd.,