From owner-freebsd-security@FreeBSD.ORG Tue Aug 16 06:49:34 2005 Return-Path: X-Original-To: freebsd-security@freebsd.org Delivered-To: freebsd-security@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 7CB5216A41F for ; Tue, 16 Aug 2005 06:49:34 +0000 (GMT) (envelope-from des@des.no) Received: from tim.des.no (tim.des.no [194.63.250.121]) by mx1.FreeBSD.org (Postfix) with ESMTP id D2DB143D48 for ; Tue, 16 Aug 2005 06:49:32 +0000 (GMT) (envelope-from des@des.no) Received: from tim.des.no (localhost [127.0.0.1]) by spam.des.no (Postfix) with ESMTP id 8ABDE60F8; Tue, 16 Aug 2005 08:49:16 +0200 (CEST) Received: from xps.des.no (des.no [80.203.228.37]) by tim.des.no (Postfix) with ESMTP id 7AA4560F1; Tue, 16 Aug 2005 08:49:16 +0200 (CEST) Received: by xps.des.no (Postfix, from userid 1001) id 3A44433D38; Tue, 16 Aug 2005 08:49:28 +0200 (CEST) To: freebsd-security@auscert.org.au References: <200508160432.j7G4W0Lk019832@app.auscert.org.au> From: des@des.no (=?iso-8859-1?q?Dag-Erling_Sm=F8rgrav?=) Date: Tue, 16 Aug 2005 08:49:28 +0200 In-Reply-To: <200508160432.j7G4W0Lk019832@app.auscert.org.au> (freebsd-security@auscert.org.au's message of "Tue, 16 Aug 2005 14:32:00 +1000") Message-ID: <868xz2pe9z.fsf@xps.des.no> User-Agent: Gnus/5.110002 (No Gnus v0.2) Emacs/21.3 (berkeley-unix) MIME-Version: 1.0 Content-Type: text/plain; charset=iso-8859-1 Content-Transfer-Encoding: quoted-printable X-Spam-Tests: ALL_TRUSTED,AWL,BAYES_00 X-Spam-Learn: ham X-Spam-Score: -5.3/5.0 X-Spam-Checker-Version: SpamAssassin 3.0.4 (2005-06-05) on tim.des.no Cc: freebsd-security@freebsd.org Subject: Re: recompile sshd with OPIE? X-BeenThere: freebsd-security@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: "Security issues \[members-only posting\]" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 16 Aug 2005 06:49:34 -0000 freebsd-security@auscert.org.au writes: > This may sound like a really silly question, but how do I enable it?=20 ChallengeResponseAuthentication Yes (which is the default) > There's no man[5] sshd_config entry, Yes, there is. > but through trial and error I > identified an option that doesn't cause an error: SkeyAuthentication yes Which FreeBSD version are you running? There is no such option in any recent OpenSSH version, and unrecognized options should cause a fatal error. DES --=20 Dag-Erling Sm=F8rgrav - des@des.no