Re: SSH connections

From: Barton L. Phillips (bartonphillips_at_sbcglobal.net)
Date: 08/28/05


Date: Sun, 28 Aug 2005 16:07:20 GMT

Carlos Moreno wrote:
> Chris Cox wrote:
>
>> 4. Better, don't allow tunneled clear text passwords at all.
>
>
> Errmmm, can you elaborate on this?
>
> I recently worked on securing all of our servers' SSH configuration
> with all of the items you mentioned (except that I left them on port
> 22), but I've never even heard of these "tunneled clear text passwords",
> so maybe I'm allowing them without even being aware of it?
>
> How can I make sure that I'm not allowing them?
>
> Thanks,
>
> Carlos
> --
He means letting users login by entering a password instead of
public/private key authentication.



Relevant Pages

  • Re: A required privilege is not held by the client
    ... let me elaborate my case. ... I am working in a domain environment. ... SeTcbPrivilege priviledge set. ... I have tried with aal possible usernames and passwords but ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: SSH connections
    ... don't allow tunneled clear text passwords at all. ... can you elaborate on this? ... > I recently worked on securing all of our servers' SSH configuration ... Was man mit Gewalt gewinnt, kann man nur mit Gewalt behalten (Mahatma ...
    (comp.os.linux.security)
  • Re: Rabin vs. RSA/ElGamal
    ... Carlos Moreno wrote: ... Do you mean that people use the "square and multiply" approach/idea ... Can you elaborate, ... suppose instead of reading one bit at a time you read k bits? ...
    (sci.crypt)
  • Re: E-bay shoppers beware....
    ... They say it's not by stealing usernames and passwords, ... wouldn't elaborate (I don't blame them). ... *100s* of DVDs for sale. ...
    (rec.boats)