Re: how would openssh react face to an attack ?

From: JL (jean-louis.ly@eads-telecom.com)
Date: 12/02/02


From: jean-louis.ly@eads-telecom.com (JL)
Date: 2 Dec 2002 02:34:37 -0800

dtucker@dodgy.net.au (Darren Tucker) wrote in message news:<as92qk$2te$1@gate.dodgy.net.au>...
> In article <632c3a84.0211290835.121dd265@posting.google.com>,
> JL <jean-louis.ly@eads-telecom.com> wrote:
> >that is a question i was wondering for quite a time already
> >we know openssh is secure and so on
> >but how would it react face to an attack ?
>
> Depends on the underlying platform. AIX, for example, will lock out the
> account after X password failures (where X is defined by the admin).
>
> PAM-based systems may return PAM_MAXTRIES to indicate excessive
> password failures which sshd will treat as an error.
>
> Generally, if the OS doesn't support lockout then sshd doesn't either.

hmm ok thanks for your quick answer



Relevant Pages

  • Re: how would openssh react face to an attack ?
    ... >>>we know openssh is secure and so on ... >> account after X password failures. ... if the OS doesn't support lockout then sshd doesn't either. ... But you can disable password authentication and use keys only. ...
    (comp.security.ssh)
  • RE: OpenSSH b0rked (was RE: Problems with IPFW patch)
    ... fix was the config file. ... No reboots or restarting sshd necessary. ... > Subject: RE: OpenSSH b0rked ... >> annoying install sequence - you can't define where it gets ...
    (FreeBSD-Security)
  • last output
    ... Before patching all worked fine. ... security sshd sftp-server integer overlow pam keyboard interactive ... it was related to openssh sshd ... ...
    (SunManagers)
  • Re: Attacks against SSH?
    ... > CRC32-attack. ... i've seen quite a few attempts against sshd in the last few days, ... rumours of a "new OpenSSH exploit" started wandering around. ... the CRC bug in unpatched/vulnerable versions of ssh. ...
    (Incidents)
  • OpenSSH 3.1 released
    ... OpenSSH 3.1 has just been released. ... implementation and includes sftp client and server support. ... sshd x11 forwarding listens on localhost by default; ... see sshd X11UseLocalhost option to revert to prior behaviour ...
    (comp.security.ssh)

Quantcast