From owner-freebsd-questions@FreeBSD.ORG Fri Feb 4 08:43:36 2005 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.FreeBSD.org (mx1.freebsd.org [216.136.204.125]) by hub.freebsd.org (Postfix) with ESMTP id 40CB616A4CE for ; Fri, 4 Feb 2005 08:43:36 +0000 (GMT) Received: from mail.freebsd-corp-net-guide.com (mail.freebsd-corp-net-guide.com [65.75.192.90]) by mx1.FreeBSD.org (Postfix) with ESMTP id B8F0B43D1D for ; Fri, 4 Feb 2005 08:43:35 +0000 (GMT) (envelope-from tedm@toybox.placo.com) Received: from tedwin2k (nat-rtr.freebsd-corp-net-guide.com [65.75.197.130]) j148hRj86601; Fri, 4 Feb 2005 00:43:27 -0800 (PST) (envelope-from tedm@toybox.placo.com) From: "Ted Mittelstaedt" To: "Giorgos Keramidas" Date: Fri, 4 Feb 2005 00:43:25 -0800 Message-ID: MIME-Version: 1.0 Content-Type: text/plain; charset="us-ascii" Content-Transfer-Encoding: 7bit X-Priority: 3 (Normal) X-MSMail-Priority: Normal X-Mailer: Microsoft Outlook IMO, Build 9.0.6604 (9.0.2911.0) X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1441 In-Reply-To: <20050204080900.GA792@orion.daedalusnetworks.priv> Importance: Normal cc: freebsd-questions@freebsd.org Subject: RE: ssh default security risc X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.1 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 04 Feb 2005 08:43:36 -0000 > -----Original Message----- > From: owner-freebsd-questions@freebsd.org > [mailto:owner-freebsd-questions@freebsd.org]On Behalf Of Giorgos > Keramidas > Sent: Friday, February 04, 2005 12:09 AM > To: Ted Mittelstaedt > Cc: freebsd-questions@freebsd.org > Subject: Re: ssh default security risc > > > > > [snip great advice about securing ssh access] > > I was (perhaps not so) obviously referring to "all other things being > equal, allowing ssh access to a plain user is safer than allowing > direct ssh access to root. Much better - and such a statement is an academic, (not a religious), comparison - which is where the discussion should be. Unfortunately the OP - in typical troll fashion, although I'm not accusing him of being a troll - yet - provided absolutely no details of what the heck his environment was or what he was really doing - which usually lays rich ground for the discussion to spin out of control. Ted