On Wed, 26 Dec 2001, Shlomi Fish wrote:
> On Wed, 26 Dec 2001, guy keren wrote:
>
> >
> > On Wed, 26 Dec 2001, Shlomi Fish wrote:
> >
> > > Done. IGLU now has an SSH server on port 29. I managed to ssh from here in
> > > the Technion. At least the firewalling is not disturbing too much.
> >
> > please disable direct root login into the ssh server - that's how the old
> > one was configured, for a reason. when someone uses root - they must go in
> > via a regular user - it makes it easier to track things.
> >
>
> Two things:
>
> 1. The upgrade of ssh is complete. The ssh on port 29 is still active.
>
For everybody's information - the new SSH is installed under
/usr/local/{bin/sbin...} and its corresponding SSL library under
/usr/local/ssl.
I'll update the init scripts to reflect those changes.
Regards,
Shlomi Fish
> 2. We might wish to enable login as root. The reason for it is that
> passwords delivered over ssh are vulnerable to the keystroke timing
> sniffing. The reason is that ssh sends each letter one at a time and one
> can eventually deduce the password from the time in which each letter
> arrived.
>
> Regards,
>
> Shlomi Fish
>
> > thanks,
> >
> > --
> > guy
> >
> > "For world domination - press 1,
> > or dial 0, and please hold, for the creator." -- nob o. dy
> >
>
>
>
> ----------------------------------------------------------------------
> Shlomi Fish [EMAIL PROTECTED]
> Home Page: http://t2.technion.ac.il/~shlomif/
> Home E-mail: [EMAIL PROTECTED]
>
> "Let's suppose you have a table with 2^n cups..."
> "Wait a second - is n a natural number?"
>
>
> ----------------------------------------------------------------------------
> To unsubscribe, send a message to [EMAIL PROTECTED]
> Archives available at http://www.mail-archive.com/[email protected]/
>
----------------------------------------------------------------------
Shlomi Fish [EMAIL PROTECTED]
Home Page: http://t2.technion.ac.il/~shlomif/
Home E-mail: [EMAIL PROTECTED]
"Let's suppose you have a table with 2^n cups..."
"Wait a second - is n a natural number?"
----------------------------------------------------------------------------
To unsubscribe, send a message to [EMAIL PROTECTED]
Archives available at http://www.mail-archive.com/[email protected]/