[Gllug] Selective SSH logins

James Laver gllug at jameslaver.com
Tue Aug 26 12:26:32 UTC 2008


On 2008-08-26 13:25, "- Tethys" <tethys at gmail.com> wrote:

> On Tue, Aug 26, 2008 at 1:09 PM, John Winters <john at sinodun.org.uk> wrote:
> 
>>> I want to have everybody using key authentication but retain one password
>>> login in case something goes wrong with the keys.
>> 
>> The problem with that is you've immediately compromised your security by
>> allowing access to anyone who can brute-force the password.
> 
> Sigh. I do wish people would stop perpetuating the myth that key
> authenticated logins are more secure than password authenticated ones.
> If anything, the opposite is true.
> 
> Tet

I assume you have reasonable justification beyond "I'm incapable of keeping
my private key safe"?

--James


-- 
Gllug mailing list  -  Gllug at gllug.org.uk
http://lists.gllug.org.uk/mailman/listinfo/gllug




More information about the GLLUG mailing list