On Wed, 26 Dec 2001, Shlomi Fish wrote:
> 2. We might wish to enable login as root. no - we might NOT wish to enable login as root. doing so allows one to connect to iglu without leaving any traces of who it was that used 'root', which tends to cause problems down the road. > The reason for it is that > passwords delivered over ssh are vulnerable to the keystroke timing > sniffing. The reason is that ssh sends each letter one at a time and one > can eventually deduce the password from the time in which each letter > arrived. what does that got to do with enabling direct ssh login as root? -- guy "For world domination - press 1, or dial 0, and please hold, for the creator." -- nob o. dy ---------------------------------------------------------------------------- To unsubscribe, send a message to [EMAIL PROTECTED] Archives available at http://www.mail-archive.com/[email protected]/
