Subject: Re: PermitRootLogin in SSHd (WAS: Re: Telnet logins)
To: David Brownlee <abs@netbsd.org>
From: Curt Sampson <cjs@cynic.net>
List: port-i386
Date: 08/27/2001 19:52:29
On Mon, 27 Aug 2001, David Brownlee wrote:

> > The alternative, leaving it as it is, means poking a hole in the default
> > security policy--a hole that didn't exist until we started shipping ssh
> > with the system.
>
> 	The "default security policy" does not start sshd.

I don't see that as being of much consequence. The default security policy
doesn't start telnetd, either, yet it's always been our default policy
that, should you start telnetd, you cannot log in as root via the network.

cjs
-- 
Curt Sampson  <cjs@cynic.net>   +81 3 5778 0123   http://www.netbsd.org
    Don't you know, in this new Dark Age, we're all light.  --XTC