This only happens if you use ssh-agent, otherwise you need to give the
passphrase for the private key every time you start an ssh connection, and
that it yet another thing they have to know.
David
Dennis Wicks
<[EMAIL PROTECTED] To: [EMAIL PROTECTED]
> cc:
Sent by: Linux Subject: Re: Root passwd
on 390 Port
<[EMAIL PROTECTED]
ARIST.EDU>
06/03/2004
08:14 PM
Please respond
to Linux on 390
Port
Actually, I prefer to use passwords with ssh. The
passwords are not sent in the clear and this way
if anyone gets access to your PC they can't log
on to other systems just by clicking icons.
One more hurdle for the intruder to surmount!
David Goodenough
<David.Goodenough@ To:
[EMAIL PROTECTED]
DGA.co.uk> cc:
Sent by: Linux on Subject: Re: Root passwd
390 Port
<[EMAIL PROTECTED]
ST.EDU>
06/03/2004 10:54
AM
Please respond to
Linux on 390 Port
I completely agree that when using ssh you should use certificates rather
than keys, but you should also log onto your own ID and not onto root, and
then use sudo to do the priviledged bits. All my ssh servers are set to
refuse root logon, and to insist on keys not passwords.
David
----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or
visit
http://www.marist.edu/htbin/wlvindex?LINUX-390
----------------------------------------------------------------------
For LINUX-390 subscribe / signoff / archive access instructions,
send email to [EMAIL PROTECTED] with the message: INFO LINUX-390 or visit
http://www.marist.edu/htbin/wlvindex?LINUX-390