- Subject: Re: annoying brute force attack attempt using ssh
- From: Manuel Aróstegui <manuel@xxxxxxxxxxxxxx>
- Date: Fri, 16 May 2008 15:23:25 +0200
- In-reply-to: <87prrndz4j.fsf@xxxxxxxxxxxxxxx>
- Reply-to: For users of Fedora <fedora-list@xxxxxxxxxx>
El jue, 15-05-2008 a las 14:41 -0700, Wolfgang S. Rupprecht escribió:
> "jeff emminger" <jemminger@xxxxxxxxx> writes:
> > isn't password authentication insecure? why not set
> > "PasswordAuthentication no" and use ssh keys, and maybe port-knocking
> > too
>
> My feeling exactly. You have no control over how stupid a password
> users will pick. The only control you have is to not allow passwords
> in the first place and insist on at least a 1k-bit (hopefully random)
> key.
Although, you can force them to create passwords with numbers, something
like, for instance, at least 2 numbers and one alphanumeric characters.
That would help a wee bit to avoid easy passwords that may be broken
with a basic brute force attack.
Manuel.
--
Manuel Arostegui Ramirez.
Electronic Mail is not secure, might not be read every day, and should not
be used for urgent or sensitive issues.
--
fedora-list mailing list
fedora-list@xxxxxxxxxx
To unsubscribe: https://www.redhat.com/mailman/listinfo/fedora-list
[Older Fedora Users Mail]
[Home]
[Fedora News]
[Fedora Advisory Board]
[Fedora Security]
[Fedora Maintainers]
[Fedora Infrastructure]
[Fedora Websites]
[Anaconda Devel]
[Fedora Devel Java]
[Fedora Legacy]
[Fedora Desktop]
[Fedora Fonts]
[iPod Nano]
[ATA RAID]
[Fedora Bible]
[Fedora Marketing]
[Fedora Management Tools]
[Fedora Mentors]
[Fedora Package Announce]
[Free Dating Site]
[Fedora Package Review]
[Fedora PHP Devel]
[Kickstart]
[Fedora Music]
[Fedora Packaging]
[Centos]
[Fedora SELinux]
[Fedora Legal]
[Fedora Kernel]
[Fedora QA]
[Fedora Triage]
[Coolkey]
[ET Management Tools]
[Yum Users]
[Tux]
[Big List of Linux Books]
[Yosemite News]
[Yosemite Photos]
[Linux Apps]
[Maemo Users]
[KDE Users]
[Fedora Tools]
[Fedora Art]
[Fedora Docs]
[Asterisk PBX]
[Fedora Sparc]
[Fedora Universal Network Connector]
[Fedora ARM]
[Fedora 8 and Red Hat Enterprise Linux Bible]