Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 16 Sep 2003 14:58:44 -0400
From:      Damian Gerow <damian@sentex.net>
To:        security@freebsd.org
Subject:   Re: OpenSSH heads-up
Message-ID:  <20030916185844.GZ66001@sentex.net>
In-Reply-To: <20030916185417.GA6885@madman.celabo.org>
References:  <4.3.2.7.2.20030916123558.02cfdef0@localhost> <20030916134347.GA30359@madman.celabo.org> <4.3.2.7.2.20030916123558.02cfdef0@localhost> <4.3.2.7.2.20030916124550.02a55970@localhost> <20030916185417.GA6885@madman.celabo.org>

next in thread | previous in thread | raw e-mail | index | archive | help
Thus spake Jacques A. Vidrine (nectar@freebsd.org) [16/09/03 14:55]:
> AFAICT, you need not authenticate, it is not specific to protocol
> version 2, and there is no workaround.

So privsep won't help in this case?  I haven't seen any direct mention of it
yet, and my understanding of privsep is that it happens before
authentication, so it's not clear if it would be a viable workaround or not.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20030916185844.GZ66001>