locked account accessable via pubkey auth

Markus Friedl markus at openbsd.org
Wed Jan 30 21:08:39 EST 2002


On Tue, Jan 29, 2002 at 12:56:55PM +0100, Dost, Alexander wrote:
> maybe this is a silly question ;-) But why is it possible to login on a
> machine with a locked account (passwd -l ) via pubkey-authentication
> (authorized_keys) ?

expired passwords are very different from expired accounts:

if a password is expired the password can longer be used.
if an account is expired the account can longer be used.

or am I missing something?



More information about the openssh-unix-dev mailing list