Subject: Re: s/key messaging
To: None <tech-security@NetBSD.ORG>
From: Angelos D. Keromytis <angelos@dsl.cis.upenn.edu>
List: tech-security
Date: 11/01/1997 23:16:09
And if it's an existing account that *does* have s/key setup, you get
the challenge. I suppose the correct behaviour is to offer a bogus
challenge if the user is nonexistant or not setup for s/key (makes
debugging a bit more difficult).
-Angelos