Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 02 May 2001 09:44:03 -0700
From:      Evan Oldford <evan@whistle.com>
To:        Gavin Atkinson <gavin@ury.york.ac.uk>
Cc:        Nick Barnes <Nick.Barnes@pobox.com>, freebsd-stable@FreeBSD.ORG
Subject:   Re: telnet sometimes gets "SRA secure login" prompt??
Message-ID:  <3AF03953.A69B178F@whistle.com>
References:  <Pine.BSF.4.33.0105021717220.56833-100000@ury.york.ac.uk>

index | next in thread | previous in thread | raw e-mail

Gavin Atkinson wrote:
> 
> On Wed, 2 May 2001, Nick Barnes wrote:
> >  In particular, does it appear if I have installed the
> > crypto distrib on both source and target of the telnet?
> 
> Yeah - it's part of the crypto package. Worryingly, it also allows you to
> telnet in (from localhost or externally) as root... totally losing the
> protection gained by having the wheel group...
> 
> Gavin
> 
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-stable" in the body of the message

Edit your /etc/inetd.conf  "-a" option (man telnetd)
telnet  stream  tcp     nowait  root    /usr/libexec/telnetd    telnetd
-a off

and

Edit your /etc/ttys 
remove the "secure" entries to your Pseudo terminals
-- 
_______________________________________________________________________
Evan Oldford  *  Whistle Communications, Inc. *  http://www.whistle.com

To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-stable" in the body of the message



help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?3AF03953.A69B178F>