lu hu writes:
> So I think ChallengeResponseAuthentication should be set to NO, since
> it is not used by anything by default (you need manual steps as root
> to use ex.: skey).
If you want it set to NO, if you feel safer that way, set it to NO on
your systems.
IMHO
Allan
n
OpenSSH + OpenBSD.
Many thanks.
> Sent: Sunday, December 29, 2019 at 6:07 PM
> From: "lu hu"
> To: misc@openbsd.org
> Subject: Re: Why isn't ChallengeResponseAuthentication NO in sshd_config?
>
> Hello:
>
> 66# grep -i challenge /etc/ssh/sshd_confi
Hello,
any thoughts anyone?
> Sent: Sunday, December 29, 2019 at 6:07 PM
> From: "lu hu"
> To: misc@openbsd.org
> Subject: Re: Why isn't ChallengeResponseAuthentication NO in sshd_config?
>
> Hello:
>
> 66# grep -i challenge /etc/ssh/sshd_config
>
r sorry, am I posting to the wrong list?
Really Many Thanks.
Happy New Year!
> Sent: Monday, December 23, 2019 at 1:58 PM
> From: "Jan Betlach"
> To: "lu hu"
> Cc: misc@openbsd.org
> Subject: Re: Why isn't ChallengeResponseAuthentication NO in
;>
>> Why isn't ChallengeResponseAuthentication NO in sshd_config by
>> default?
>>
>> It would be more secure, afaik.
Would it?
On OpenBSD skey is set in /etc/login.conf but skey itself is not
enabled unless you follow skeyinit(1) steps.
The other challenge
Isn’t it commented out by default?
Jan
Hello,
nobody about the $subject? :)
Why isn't ChallengeResponseAuthentication NO in sshd_config by
default?
It would be more secure, afaik.
Many thanks.
Sent: Thursday, December 19, 2019 at 7:58 PM
From: "lu hu"
To: misc@open
Hello,
nobody about the $subject? :)
Why isn't ChallengeResponseAuthentication NO in sshd_config by default?
It would be more secure, afaik.
Many thanks.
> Sent: Thursday, December 19, 2019 at 7:58 PM
> From: "lu hu"
> To: misc@openbsd.org
> Sent: Wednesday, December 18, 2019 at 9:49 PM
> From: "Bodie"
> To: misc@openbsd.org, owner-m...@openbsd.org
> Subject: Re: Why isn't ChallengeResponseAuthentication NO in sshd_config?
>
>
>
> On 18.12.2019 18:48, lu hu wrote:
> > Hello,
> &g
On 18.12.2019 18:48, lu hu wrote:
Hello,
# what am I talking about?
https://man.openbsd.org/sshd_config#ChallengeResponseAuthentication
ChallengeResponseAuthentication
Specifies whether challenge-response authentication is allowed. All
authentication styles from
Hello,
# what am I talking about?
https://man.openbsd.org/sshd_config#ChallengeResponseAuthentication
ChallengeResponseAuthentication
Specifies whether challenge-response authentication is allowed. All
authentication styles from login.conf(5) are supported. The defa
10 matches
Mail list logo