Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 25 Mar 2009 10:53:24 +0100
From:      Ruben de Groot <mail25@bzerk.org>
To:        Chuck Robey <chuckr@telenix.org>
Cc:        barney_cordoba@yahoo.com, current@freebsd.org
Subject:   Re: Telnet root login
Message-ID:  <20090325095324.GB48145@ei.bzerk.org>
In-Reply-To: <49C9813C.3070404@telenix.org>
References:  <285790.99650.qm@web63903.mail.re1.yahoo.com> <49C9813C.3070404@telenix.org>

next in thread | previous in thread | raw e-mail | index | archive | help
On Tue, Mar 24, 2009 at 08:56:28PM -0400, Chuck Robey typed:
> -----BEGIN PGP SIGNED MESSAGE-----
> Hash: SHA1
> 
> Barney Cordoba wrote:
> > How do you enable root telnet access in current? I remember having some
> > issue with specifying pty/0 in ttys years ago in linux but the right
> > way to do it excapes me.
> 
> I really wouldn't do that.  If you have to get external root access, use ssh,
> but if you haven't been broken into yourself, it's FAR more likely that you just
> haven't seen it, than it hasn't happened.  You don't want to allow folks into
> your machine, there isn't any such thing as honor among those folks.

Sound advice, but not an answer to his question.
Barney, you have to make the network pseudo ttys secure, like:

ttyp0   none    network    secure

Ruben



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20090325095324.GB48145>