external ident security
If someone has external ident on true its easy for the users to spoof their ips (being able to use a *@localhost ioFTPD/ioFTPD account for instance) since they could simply send a idnt with a made up ip to it.
Wouldnt it be more appropriate to allow only certain ips using the external idnt feature?
Its not that important, just sharing a thought.
UNi
|