Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 24 Jun 2019 16:33:58 +0000
From:      bugzilla-noreply@freebsd.org
To:        bugs@FreeBSD.org
Subject:   [Bug 237270] pam_opieaccess does not support IPv6, or documentation is lacking
Message-ID:  <bug-237270-227-SUJiyq572L@https.bugs.freebsd.org/bugzilla/>
In-Reply-To: <bug-237270-227@https.bugs.freebsd.org/bugzilla/>
References:  <bug-237270-227@https.bugs.freebsd.org/bugzilla/>

next in thread | previous in thread | raw e-mail | index | archive | help

https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=237270

--- Comment #13 from Dag-Erling Smørgrav <des@FreeBSD.org> ---
The OATH HOTP / TOTP algorithm is stronger than OPIE. If you've been using OPIE
as your only password, which you shouldn't, you'll be no worse off using OATH
instead. But I would urge you to also implement some sort of rate limiting. You
can use blacklistd(8) for services that support it (including sshd), or
security/py-fail2ban for those that don't.

-- 
You are receiving this mail because:
You are the assignee for the bug.


Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-237270-227-SUJiyq572L>