Utility to scan for unpassworded SSH privkeys?

Stephen Frost sfrost at snowman.net
Fri May 24 22:47:10 EST 2013


* Nico Kadel-Garcia (nkadel at gmail.com) wrote:
> It's a big reason that I encourage migration to Kerberos based
> authentication wherever possible, but that doesn't work well for
> Subversion or git authentication.

... it doesn't?  Why not?  Having a .k5login for the 'git' account is
essentially the same as having an authorized_keys file for the same
account..  I've not looked into it specifically, but the offhand comment
above surprised me, so I'm curious what the specific issue there is.

(I'm also a fan of encouraging Kerberos utilization whenever possible)

	Thanks,

		Stephen
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 198 bytes
Desc: Digital signature
URL: <http://lists.mindrot.org/pipermail/openssh-unix-dev/attachments/20130524/e8b2dee3/attachment.bin>


More information about the openssh-unix-dev mailing list