[1252] in Release_7.7_team

home help back first fref pref prev next nref lref last post

Re: ssh and access_on

daemon@ATHENA.MIT.EDU (Dan Winship)
Wed Apr 15 00:10:35 1998

To: Jonathon Weiss <jweiss@MIT.EDU>
Cc: release-team@MIT.EDU
In-Reply-To: Your message of "Wed, 15 Apr 1998 00:04:54 EDT."
             <199804150404.AAA16144@the-other-woman.MIT.EDU> 
Date: Wed, 15 Apr 1998 00:10:29 EDT
From: Dan Winship <danw@MIT.EDU>

You won't be able to run ssh on a public workstation without first
generating a key anyway, so the `access_on doesn't turn on sshd'
doesn't seem to be that big a problem.

Hm... we should have reactivate do a "rm -f /etc/ssh_*" because
otherwise people are going to generate keys so people can ssh in and
then not delete them afterwards and people will end up using keys
generated by other people which are therefore insecure.


We could hack access_off/access_on to check the SSHD inetd.conf
variable and kill/restart sshd if necessary?

-- Dan

home help back first fref pref prev next nref lref last post