Subject: Re: pam, ssh, and pam_ssh
To: Manuel Bouyer <bouyer@antioche.eu.org>
From: Johnny Billquist <bqt@Update.UU.SE>
List: current-users
Date: 03/14/2005 01:13:29
On Sun, 13 Mar 2005, Manuel Bouyer wrote:
> On Sun, Mar 13, 2005 at 06:33:18PM +0000, dieter wrote:
>>
>> I think either
>> 1) pam_ssh.so should be commented out in /etc/pam.d/sshd
>> or
>> 2) a warning should be added to UPDATING that the behaviour of sshd is
>> changed.
>>
>> Suddenly, identities in ~/.ssh work in 2 directions; not only to login
>> some place else, but also to authenticate from remote on the local
>> machine, regardless the contents of authorized_keys.
>
> I, too, think this is bad.
This is not just bad, this is bloody serious. How the f*ck did that one
pass by?
Johnny
Johnny Billquist || "I'm on a bus
|| on a psychedelic trip
email: bqt@update.uu.se || Reading murder books
pdp is alive! || tryin' to stay hip" - B. Idol