Re: beginner can't get public key auth.

From: Darren Tucker (dtucker@dodgy.net.au)
Date: 01/27/03


From: dtucker@dodgy.net.au (Darren Tucker)
Date: Mon, 27 Jan 2003 09:43:05 GMT

In article <m1lsmvfdrmb.fsf@syrinx.oankali.net>,
Richard E. Silverman <slade@shore.net> wrote:
>>>>>> "DT" == Darren Tucker <dtucker@dodgy.net.au> writes:
> DT> See secure_filename() in auth.c.
>
>You are mistaken -- read the code again, especially near the comment:
>
>Besides, if you had tested it before posting, you would have found
>empirically that those permissions do not matter.

I stand corrected for the current version, however I've seen it happen
in the past. A quick look at the cvs commit logs (rev 1.33 if you're
curious) shows that it was changed about 2.9.9 and since the the
poster's version was unspecified, it *could* have been the cause.

As it turned out, it wasn't, so let me qualify the original statement:
In some versions below 2.9.9 OpenSSH's sshd will check all the
directories up to the root.

-- 
Darren Tucker (dtucker at zip.com.au)
GPG key 8FF4FA69 / D9A3 86E9 7EEE AF4B B2D4  37C9 C982 80C7 8FF4 FA69
    Good judgement comes with experience. Unfortunately, the experience
usually comes from bad judgement.


Relevant Pages

  • Re: "Ecclesial Communion, Conciliarity and Authority"
    ... judgement (or, perhaps, of some sort of compulsion that doesn't ... Ken's choice to be an SDAis a matter of his and my choice ... I know he's had his disagreements with the SDA ... that when we accept Christianity we are accepting what we're given. ...
    (uk.religion.christian)
  • Re: "Ecclesial Communion, Conciliarity and Authority"
    ... judgement (or, perhaps, of some sort of compulsion that doesn't ... Ken's choice to be an SDAis a matter of his and my choice ... I know he's had his disagreements with the SDA ... You have to trust yourself. ...
    (uk.religion.christian)
  • Re: Another License Idea
    ... >an Old friend wrote: ... >>> But setting the line at 50 W output is purely a matter of judgement. ... Usenet Zone Free Binaries Usenet Server ...
    (rec.radio.amateur.policy)
  • Re: RIH Zarqawi
    ... Prove that the US forces would've easily been able to arrest Zarqawi ... without first bombing him. ... In these cases it's a matter of military ... judgement as to how the individual is best taken out. ...
    (rec.audio.pro)
  • Re: Englishness and Is it in the blood? Letter sent to all daily papers and the cricketing press
    ... >>>a society is a matter of judgement. ... You never ever debate, ... > Blair Scandal website: http://www.geocities.com/blairscandal/ ...
    (uk.sport.cricket)