[22677] in Kerberos
Re: Using ssh-keys for kerberos authentication
daemon@ATHENA.MIT.EDU (Ken Hornstein)
Thu Oct 14 08:49:14 2004
Message-Id: <200410141246.i9ECkDEX012311@ginger.cmf.nrl.navy.mil>
To: Michael Tautschnig <michael.tautschnig@zt-consulting.com>
In-Reply-To: <Pine.LNX.4.61.0410140824430.21414@l01.thnet>
Date: Thu, 14 Oct 2004 08:46:13 -0400
From: Ken Hornstein <kenh@cmf.nrl.navy.mil>
cc: kerberos@mit.edu
Errors-To: kerberos-bounces@mit.edu
>> Why not just use Kerberos authentication at the ssh layer though.
>People like ssh-keys and they are considered rather secure, passwords are
>not (they are more vulnerable to brute-force-attacks).
I know plenty of people who have gotten 0wned because of widespread
use of ssh-keys (more than I know have gotten 0wned because of a
Kerberos password being compromised, and I know lots of Kerberos
sites). To each his or her own.
--Ken
________________________________________________
Kerberos mailing list Kerberos@mit.edu
https://mailman.mit.edu/mailman/listinfo/kerberos