From owner-freebsd-questions@FreeBSD.ORG Fri Jan 19 15:53:38 2007 Return-Path: X-Original-To: freebsd-questions@freebsd.org Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [69.147.83.52]) by hub.freebsd.org (Postfix) with ESMTP id 315AB16A400 for ; Fri, 19 Jan 2007 15:53:38 +0000 (UTC) (envelope-from kirk@strauser.com) Received: from kanga.honeypot.net (kanga.honeypot.net [208.162.254.122]) by mx1.freebsd.org (Postfix) with ESMTP id E608F13C471 for ; Fri, 19 Jan 2007 15:53:37 +0000 (UTC) (envelope-from kirk@strauser.com) Received: from localhost (localhost [127.0.0.1]) by kanga.honeypot.net (Postfix) with ESMTP id 3831C20B403 for ; Fri, 19 Jan 2007 09:53:37 -0600 (CST) X-Virus-Scanned: amavisd-new at honeypot.net Received: from kanga.honeypot.net ([127.0.0.1]) by localhost (kanga.honeypot.net [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3xPK0QAzUJ96 for ; Fri, 19 Jan 2007 09:53:31 -0600 (CST) Received: from janus.daycos.com (janus.daycos.com [10.45.12.2]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by kanga.honeypot.net (Postfix) with ESMTP id 5B1CA209B4A for ; Fri, 19 Jan 2007 09:53:31 -0600 (CST) From: Kirk Strauser To: freebsd-questions@freebsd.org Date: Fri, 19 Jan 2007 09:53:23 -0600 User-Agent: KMail/1.9.5 References: <200701181701.04719.kirk@strauser.com> <20070119151015.GC25249@submonkey.net> In-Reply-To: <20070119151015.GC25249@submonkey.net> X-Face: T+/_{qmjgbosI0J/e83I~w[&VF'w)!((xEpj///^bA/6?jHHS?nq+T8_+`nh"WnEWCWG, \}]Y2$)) =?utf-8?q?vLVz4ACChrEcb=7DCO=5EtYmMG=5C=0A=09ts=2Em=3F=5B7=5B6OwE*dAJ*9f+m?= =?utf-8?q?X=2E7R32qeN=5EDJ=5C?=(k@evW?IRQCy.^ MIME-Version: 1.0 Content-Type: multipart/signed; boundary="nextPart1190687.WlKdzztLE6"; protocol="application/pgp-signature"; micalg=pgp-sha1 Content-Transfer-Encoding: 7bit Message-Id: <200701190953.29017.kirk@strauser.com> Subject: Re: ssh public key authentification X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 19 Jan 2007 15:53:38 -0000 --nextPart1190687.WlKdzztLE6 Content-Type: text/plain; charset="iso-8859-1" Content-Transfer-Encoding: quoted-printable Content-Disposition: inline On Friday 19 January 2007 9:10 am, Ceri Davies wrote: > Why not? Group write is plenty enough for someone else to replace the > .ssh directory with another one, so sshd checks for that. To replace it with another 700 directory owned by the user, containing a 40= 0=20 file also owned by the user? =2D-=20 Kirk Strauser --nextPart1190687.WlKdzztLE6 Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- iD8DBQBFsOl45sRg+Y0CpvERAuzRAKCY0yo51lav+4e0AXG49ctq4tZLlQCgoabN dOnfNDRVaYRgZ1zCOf1aBJs= =c0+s -----END PGP SIGNATURE----- --nextPart1190687.WlKdzztLE6--