Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 27 Jan 2000 08:28:44 +0200
From:      Sheldon Hearn <sheldonh@uunet.co.za>
To:        Todd Backman <todd@flyingcroc.net>
Cc:        Bill Swingle <unfurl@dub.net>, security@FreeBSD.ORG
Subject:   Re: root authorized_keys ignore? 
Message-ID:  <1573.948954524@axl.noc.iafrica.com>
In-Reply-To: Your message of "Wed, 26 Jan 2000 12:08:34 PST." <Pine.BSF.4.10.10001261202430.58696-100000@security1.noc.flyingcroc.net> 

next in thread | previous in thread | raw e-mail | index | archive | help


On Wed, 26 Jan 2000 12:08:34 PST, Todd Backman wrote:

> just the use of authorized_keys... just want to combat the
> "lazy-admin-syndrome" ;^)

Actually, it looks like you're trying to work around existing laziness,
rather than stomp on it.  So far, all the suggestions I've seen offered
in public are not fool-proof. :-)

Just disable root logins with ssh altogether and have your admins log in
with user accounts and su to root.

Ciao,
Sheldon.


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1573.948954524>