This patch is in no way intended for real use, and does not really do anything other than provide me with a completely useless placebo effect.

But thought I would pass it on.

http://www.linbsd.org/openssh-samepasswd.patch

What it tries to do, and this remains to be seen, is slowdown the sequential scans that seem to plaque every server I have with a thirty second sleep on any login attempt for a user that does not exist, or
when a login and password are the same. e.g. login:mike passwd:mike.

Let the flames begin :D

Reply via email to