AIX SSH 2.x ssh and /etc/ftpusers rcp rlogin WRONG !

Jim Knoble jmknoble at jmknoble.cx
Fri May 18 06:48:39 EST 2001


Circa 2001-May-17 17:50:42 +0200 dixit mark.pitt at ch.ibm.com:

: Another point - IBM security Policies REQUIRE that any system they look
:       after, their's or customer's, has rlogin=false for root set - this
:       means ssh will NOT be usable at any site for which IBM is responsible
:       - that means all IBM customers and IBM cannot use the product as it
:       is currently configured without mountains of paperwork.

Wouldn't it make more sense to respect the rlogin= setting only if
sshd_config has RhostsAuthentication (or potentially
RhostsRSAAuthentication) turned on?  Those are the only times when sshd
actually acts like rshd or rlogind.

-- 
jim knoble | jmknoble at jmknoble.cx | http://www.jmknoble.cx/
(GnuPG fingerprint: 31C4:8AAC:F24E:A70C:4000::BBF4:289F:EAA8:1381:1491)
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 249 bytes
Desc: not available
Url : http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20010517/d0fa6687/attachment.bin 


More information about the openssh-unix-dev mailing list