Just a suggestion:

Would it make sense to have the default, out-of-the-box config of
openssh's sshd_config use these options:

UsePrivilegeSeparation   yes (current default = no)
PermitRootLogin          no  (current default = yes)

in order to make the default config a little more "secure" (whatever that
means 8-) )?

Currently, the openpkg 1.1.x and 1.2 packaging of openssh 3.4p1 and 3.5p1
use the above defaults in parentheses. The vanilla openssh appears to set
"UsePrivilegeSeparation yes".


--
Vinod

______________________________________________________________________
The OpenPKG Project                                    www.openpkg.org
User Communication List                      [EMAIL PROTECTED]

Reply via email to