Revised OpenSSH Security Advisory (adv.iss)

Pekka Savola pekkas at netcore.fi
Thu Jun 27 05:16:14 EST 2002


On Wed, 26 Jun 2002, Markus Friedl wrote:
> 	and
> 
> 	Disable PAMAuthenticationViaKbdInt in sshd_config.


I'd rather say:

	Make sure PAMAuthenticationViaKbdInt has not been enabled
	in sshd_config.

(as it defaults to off, contrary to ChallengeResponseAuthentication), but 
that's just a minor clarification.

-- 
Pekka Savola                 "Tell me of difficulties surmounted,
Netcore Oy                   not those you stumble over and fall"
Systems. Networks. Security.  -- Robert Jordan: A Crown of Swords




More information about the openssh-unix-dev mailing list