public key vs passwd authentication?

dkoleary_at_attbi.com
Date: 09/30/03


Date: Tue, 30 Sep 2003 17:58:04 GMT

Hey;

Does anyone have any links to good solid white papers comparing the
pros/cons of passwd vs public key authentication?

I have a client that's turned off public key authentication. In order
to make them change their minds I have to develop a paper describing
why public/private key authentication is so cool.

I have several sources already including the O'Reilly's book; however
if someone's already done the comparison along with an indepth
examination of the security aspect, it'd make my job a lot easier/
quicker, etc

Thanks for any links.

Doug

--------
Senior UNIX Admin
O'Leary Computer Enterprises
dkoleary@attbi.com (w) 630-904-6098 (c) 630-248-2749
resume: http://home.attbi.com/~dkoleary/resume.html



Relevant Pages

  • Re: public key vs passwd authentication?
    ... ]> Does anyone have any links to good solid white papers comparing the ... ]> I have a client that's turned off public key authentication. ... ]situations where people have tens if not hundreds of shared secrets ...
    (comp.security.ssh)
  • Re: public key vs passwd authentication?
    ... ]Does anyone have any links to good solid white papers comparing the ... ]I have a client that's turned off public key authentication. ... Both are imune to packet sniffing, but not imune to other attacks. ...
    (comp.security.ssh)
  • Re: public key vs passwd authentication?
    ... > Does anyone have any links to good solid white papers comparing the ... > I have a client that's turned off public key authentication. ... PKI solutions depend on passwords to control access to, ...
    (comp.security.ssh)
  • Re: OpenSSH: force password authentication
    ... > server to run an automated backup job. ... > close the ssh connection, ... client in the default location for the client identity. ... Or just disable public key authentication. ...
    (comp.security.ssh)
  • SSH "failed none" syslog entries causing Linux failed login counter to advance.
    ... When looking at the syslog entries it shows a failed ... I have turned off rhost and even public key authentication in both the ... client and server configuration files. ... What is SSH attempting before the password is entered, ...
    (comp.security.ssh)