Subject: Re: pam, ssh, and pam_ssh
To: Manuel Bouyer <bouyer@antioche.eu.org>
From: Johnny Billquist <bqt@Update.UU.SE>
List: current-users
Date: 03/14/2005 01:13:29
On Sun, 13 Mar 2005, Manuel Bouyer wrote:

> On Sun, Mar 13, 2005 at 06:33:18PM +0000, dieter wrote:
>>
>> I think either
>> 1) pam_ssh.so should be commented out in /etc/pam.d/sshd
>> or
>> 2) a warning should be added to UPDATING that the behaviour of sshd is
>> changed.
>>
>> Suddenly, identities in ~/.ssh work in 2 directions; not only to login
>> some place else, but also to authenticate from remote on the local
>> machine, regardless the contents of authorized_keys.
>
> I, too, think this is bad.

This is not just bad, this is bloody serious. How the f*ck did that one 
pass by?

 	Johnny

Johnny Billquist                  || "I'm on a bus
                                   ||  on a psychedelic trip
email: bqt@update.uu.se           ||  Reading murder books
pdp is alive!                     ||  tryin' to stay hip" - B. Idol