Subject: Re: pam, ssh, and pam_ssh
To: dieter <dieter.NetBSD@pandora.be>
From: Manuel Bouyer <bouyer@antioche.eu.org>
List: current-users
Date: 03/13/2005 23:22:10
On Sun, Mar 13, 2005 at 06:33:18PM +0000, dieter wrote:
> 
> I think either
> 1) pam_ssh.so should be commented out in /etc/pam.d/sshd
> or
> 2) a warning should be added to UPDATING that the behaviour of sshd is 
> changed.
> 
> Suddenly, identities in ~/.ssh work in 2 directions; not only to login 
> some place else, but also to authenticate from remote on the local 
> machine, regardless the contents of authorized_keys.

I, too, think this is bad.

-- 
Manuel Bouyer <bouyer@antioche.eu.org>
     NetBSD: 26 ans d'experience feront toujours la difference
--