Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 17 Aug 2002 23:36:38 +0200
From:      Jan Schlesner <jschlesn@physik.TU-Berlin.DE>
To:        Mike Tancsa <mike@sentex.net>
Cc:        stable@freebsd.org, security@freebsd.org
Subject:   Re: login.access no longer works with default sshd
Message-ID:  <20020817213638.GA92398@physik.TU-Berlin.DE>
In-Reply-To: <5.1.1.6.0.20020816104955.03cdcc98@marble.sentex.ca>
References:  <5.1.1.6.0.20020816104955.03cdcc98@marble.sentex.ca>

next in thread | previous in thread | raw e-mail | index | archive | help
On Fri, Aug 16, 2002 at 10:53:52AM -0400, Mike Tancsa wrote:
> I noticed that /etc/login.access is no longer consulted with sshd by 
> default.  Are there any dangers/caveats of turning on UseLogin yes ?  As 

Login don't know how to handel xauth cookies. With "UseLogin yes"
X11-forwarding do not work. But with the options AllowGroups,
AllowUsers, DennyGroups and DennyUsers you can control the sshd-login.

Jan
-- 
[ gpg key: http://wwwnlds.physik.tu-berlin.de/~schlesner/jschlesn.gpg ]
[ key fingerprint: 4236 3497 C4CF 4F3A 274F  B6E2 C4F6 B639 1DF4 CF0A ]
--
It's better to reign in hell,
	than to serve in heaven...

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20020817213638.GA92398>