On Friday, February 14, 2020 04:16:53 PM Ed Maste wrote:
> On Fri, 14 Feb 2020 at 15:27, Joey Kelly <j...@joeykelly.net> wrote:
> > On Friday, February 14, 2020 01:18:44 PM Ed Maste wrote:
> > > Upstream OpenSSH-portable removed libwrap support in version 6.7,
> > > released in October 2014. We've maintained a patch in our tree to
> > > restore it, but it causes friction on each OpenSSH update and may
> > > introduce security vulnerabilities not present upstream. It's (past)
> > > time to remove it.
> > 
> > So color me ignorant, but how does this affect things like DenyHosts?
> 
> It's independent of denyhosts, fail2ban, blacklistd and similar. TCP
> wrappers is configured using /etc/hosts.allow and /etc/hosts.deny.

root@marsh:~ # tail -3 /etc/hosts.allow
# for denyhosts
sshd : /etc/hosts.deniedssh : deny
sshd : ALL : allow




-- 
Joey Kelly
Minister of the Gospel and Linux Consultant
http://joeykelly.net
504-239-6550
_______________________________________________
freebsd-security@freebsd.org mailing list
https://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"

Reply via email to