Nicolas Williams wrote:
> On Fri, Oct 31, 2008 at 12:27:33PM -0400, Kyle McDonald wrote:
>   
>
> You also need to keep your clients secure, but you wanted to do that
> anyways.
>   
Understood.

>> asking if there were any other options I had missed that affect 
>> HostbasedAuthentication that you or other experts might recommend I add 
>> to the list above?
>>     
>
> See the ones I mentioned in my other reply to you just now.
>   
Yep. I think I'll add the VerifyReverseMapping, as I run the DNS.

Is HostbasedUsesNameFromPacketOnly a security enhancement? or just an 
option to work around broken reverse lookups?

  -Kyle


Reply via email to