Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 25 Oct 2006 15:49:13 +1300
From:      "Juha Saarinen" <juhasaarinen@gmail.com>
To:        "Jeff MacDonald" <bignose@gmail.com>
Cc:        FreeBSD Questions <freebsd-questions@freebsd.org>
Subject:   Re: a simple questions about sshd and PasswordAuthentication
Message-ID:  <b34be8420610241949j3b7565d6r4742b30422a39369@mail.gmail.com>
In-Reply-To: <f17daf040610241940g7daa4552xb62f84fd4061607a@mail.gmail.com>
References:  <f17daf040610241940g7daa4552xb62f84fd4061607a@mail.gmail.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On 10/25/06, Jeff MacDonald <bignose@gmail.com> wrote:
> Is there anything inherintaly dangerous or wrong about enabling
> PasswordAuthentication in sshd_config ?
>
> I understand how public keys are better and everything else. And I do
> use them. I'm just curious.

Probably not, if you have strong passwords and sensible management
policies. That said, PasswordAuthentication attracts the brute-force
crackers like flies to rotting meat, so...

-- 
Juha
http://www.geekzone.co.nz/juha



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?b34be8420610241949j3b7565d6r4742b30422a39369>