My ideal setup would be:
1) no passwords ("*" in /etc/passwd or via vipw)
2) only ssh for remote access
i.e. no password-based security, only something better
3) except console, where anyone should be able to login
without any password (granted, I only have two users, root and jay)
I haven't been able to achieve #3, so I compromise
and have no console access at all, except maybe via single user.
I really don't want security to be password-based.
Hints?
(This is on Linux, Solaris, NetBSD, Darwin, OpenBSD, FreeBSD;
I've achieved #1 and #2 on all; presumably hints here only for OpenBSD.)
Thanks,
- Jay