Date: Tue, 16 Aug 2005 11:03:22 +1000 From: freebsd-security@auscert.org.au To: freebsd-security@freebsd.org Subject: Re: recompile sshd with OPIE? Message-ID: <200508160103.j7G13MUj057073@app.auscert.org.au> In-Reply-To: Message from des@des.no (=?iso-8859-1?q?Dag-Erling_Sm=F8rgrav?=) of "Mon, 15 Aug 2005 14:14:12 %2B0200." <86wtmnqtwr.fsf@xps.des.no>
next in thread | previous in thread | raw e-mail | index | archive | help
> freebsd-security@auscert.org.au writes: > > Can this be achieved within the regular system build process, or must I > > roll my own? > > You need to change src/crypto/openssh/config.h so it says > > /* #undef PAM */ > #define SKEY 1 > #define OPIE 1 > > instead of > > #define PAM 1 > /* #undef SKEY */ > /* #undef OPIE */ > > then rebuild world. Thanks - that is extremely helpful. Given that this involves modification of CVS files I'll create a localised patch for myself. I believe that I should be able to follow the independent build process for openssh rather than building world; at least, I'll try that first. joel -- Joel Hatton -- Security Analyst | Hotline: +61 7 3365 4417 AusCERT - Australia's national CERT | Fax: +61 7 3365 7031 The University of Queensland | WWW: www.auscert.org.au Qld 4072 Australia | Email: auscert@auscert.org.au
Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200508160103.j7G13MUj057073>