Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 19 Feb 2001 12:40:07 -0500
From:      "Peter C. Lai" <sirmoo@cowbert.2y.net>
To:        "Fernando Schapachnik" <fschapachnik@vianetworks.com.ar>, <security@freebsd.org>
Subject:   Re: Inconsistent behavior on openssh
Message-ID:  <000501c09a9a$ffcf7140$1e9e6389@137.99.156.23>
References:  <200102191735.OAA72628@ns1.via-net-works.net.ar>

next in thread | previous in thread | raw e-mail | index | archive | help
won't this line in /etc/syslog.conf log all logins whether via password or
not?
I know this logs password-authenticated ssh connection attempts. I don't
trust rhosts anymore than I used to (probably because I run more
passwords-authentication than firewalling boxen).

auth.*,authpriv.*                               /var/log/authlog

----- Original Message -----
From: "Fernando Schapachnik" <fpscha@ns1.via-net-works.net.ar>
To: <security@freebsd.org>
Sent: Monday, February 19, 2001 12:35 PM
Subject: Inconsistent behavior on openssh


> After installing the latest versions of openssh I noted that ssh will
> not request rhost authentication if run by an user other than root.
> This is because it can't bind to a low port, as it lost the suid bit.
> This wasn't like this before.
>
> What is supposed to be the standard way of remote ssh logging
> without password?
>
> TIA!
>
> Fernando P. Schapachnik
> Administración de la red
> VIA NET.WORKS ARGENTINA S.A.
> fschapachnik@vianetworks.com.ar
> Conmutador: (54-11) 4323-3333 - Soporte: 0810-333-AYUDA
>
>
> To Unsubscribe: send mail to majordomo@FreeBSD.org
> with "unsubscribe freebsd-security" in the body of the message
>



To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-security" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?000501c09a9a$ffcf7140$1e9e6389>