From owner-freebsd-questions Fri Feb 11 11:21:15 2000 Delivered-To: freebsd-questions@freebsd.org Received: from relay.ioffe.rssi.ru (relay.ioffe.rssi.ru [194.85.224.33]) by builder.freebsd.org (Postfix) with ESMTP id 5487247C9; Fri, 11 Feb 2000 11:21:01 -0800 (PST) Received: from astro.ioffe.rssi.ru (astro.ioffe.rssi.ru [194.85.229.130]) by relay.ioffe.rssi.ru (8.9.1/8.9.1) with ESMTP id WAA20592; Fri, 11 Feb 2000 22:20:49 +0300 (MSK) Received: by astro.ioffe.rssi.ru (8.9.3/Clnt-2.14-AS-eef) id WAA13360; Fri, 11 Feb 2000 22:21:12 +0300 (MSK) Date: Fri, 11 Feb 2000 22:21:12 +0300 (MSK) From: Alexey Koptsevich To: freebsd-questions@freebsd.org, freebsd-security@freebsd.org Subject: skey access Message-ID: MIME-Version: 1.0 Content-Type: TEXT/PLAIN; charset=US-ASCII Sender: owner-freebsd-questions@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG Ladies and Gentlemen, Would be grateful for comments on the skey system tuning. The strange thing for me is that for each host in the local segment which I would like to include in the "allowed hosts list" I must create two lines "permit hostname ..." in /etc/skey.access: for telnet to work with "UNIX passwords" it is required to type short hostname (without domain), ftp requires long hostname (including domain). Is the first item enough secure? Thanks Alexey To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-questions" in the body of the message