Binding ssh to priviledged port breaks rule (port < 1024 => system service)

Markus Friedl Markus.Friedl at informatik.uni-erlangen.de
Tue Feb 15 01:11:00 EST 2000


On Mon, Feb 14, 2000 at 02:49:14PM +0100, Ola Sigurdson wrote:
> What I'm saying is that suid should be turned off by default as it will
> cause problems for a large subset of sites who only want to use ssh as a
> secure telnet replacement.

ssh is a rsh replacement, too and rhosts-rsa is not
considered inherently insecure but needs the s-bit.
please tell me the problems caused by the s-bit.

-markus





More information about the openssh-unix-dev mailing list