SSHD defaults

From: teLi (route@null0.null)
Date: 06/24/02

  • Next message: drumstik: "Re: How was my Firewall HACKED???"

    From: "teLi" <route@null0.null>
    Date: Mon, 24 Jun 2002 00:52:10 GMT
    
    

    I know the default key size is 768 bits with OpenSSH. Is it possible to
    change this value from 768 to 1024? If I'm not mistaken, 1024 bits encrypts
    the key while 768 sends it as plain text. Correct me if I am wrong, please.

    Also, I was reading Hacking Linux Exposed and it said I should change
    RSAAuthentication to "no" because this is an insecure method of
    authentication because it doesen't require the user's password if someone
    just copies the key from .ssh/authorized_keys. I'm a little confused about
    that. I use SSH-1.99-OpenSSH_3.1p1.

    Basically I am a little woried about sshd's configuration file defaults. I'd
    like to tweak them to the most secure possible settings. The method of
    authentication I plan to use is username/password.

    Any feedback would be appreciated.



    Relevant Pages

    • SSHD defaults
      ... I know the default key size is 768 bits with OpenSSH. ... RSAAuthentication to "no" because this is an insecure method of ... Basically I am a little woried about sshd's configuration file defaults. ... authentication I plan to use is username/password. ...
      (comp.os.linux.security)
    • FreeBSD Security Advisory FreeBSD-SA-03:15.openssh
      ... For general information regarding FreeBSD Security Advisories, ... OpenSSH is a free version of the SSH protocol suite of network ... The ssh2 protocol supports a wide range of authentication ... Its challenge / response mechanisms, ...
      (Bugtraq)
    • [Full-Disclosure] FreeBSD Security Advisory FreeBSD-SA-03:15.openssh
      ... For general information regarding FreeBSD Security Advisories, ... OpenSSH is a free version of the SSH protocol suite of network ... The ssh2 protocol supports a wide range of authentication ... Its challenge / response mechanisms, ...
      (Full-Disclosure)
    • FreeBSD Security Advisory FreeBSD-SA-03:15.openssh
      ... For general information regarding FreeBSD Security Advisories, ... OpenSSH is a free version of the SSH protocol suite of network ... The ssh2 protocol supports a wide range of authentication ... Its challenge / response mechanisms, ...
      (FreeBSD-Security)
    • [FreeBSD-Announce] FreeBSD Security Advisory FreeBSD-SA-03:15.openssh
      ... For general information regarding FreeBSD Security Advisories, ... OpenSSH is a free version of the SSH protocol suite of network ... The ssh2 protocol supports a wide range of authentication ... Its challenge / response mechanisms, ...
      (freebsd-announce)