A telnet exploit via Curl was reported recently

I am relatively new to running a Mesh server (on a hAPlite).  I noticed that Telnet is ON by default.  I've always been told that would be a security hole.

Would it make sense to make the default be OFF?

On the AREDN network, it's not much of a hole.   Someone would need a lot of skill and patience to capture a telnet login.  But it's up to you, Mike.   

Frequently when the AREDN code gets all tangled up (which isn't all that often anymore), the ssh daemon crashes.  But if telnet is enabled, it frequently stays running, so is available for access and subsequent troubleshooting.

Orv W6BI

