[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: [cobalt-users] Disallowing remote root login



> root logins by telnet are disabled as standard on cobalts,
> but not on ftp afaik, you can add root to /etc/ftpusers to
> prevent that.

I think that's backwards; I don't recall any ftpd ever putting root in
ftpusers, but telnet has always allowed remote root login as I recall.

> if you comment out in.telnetd from /etc/initd.conf and
> install openssh that wont allow you in as root as default either.

We think alike. :) However, the *first* thing I did was to install
openssh and uninstall telnet altogether. But that allows a remote root
login as well, which is how this thread started. It turns out that there
is a PermitRootLogin parameter in etc/ssh/sshd_config that you can set
to no.

--
Rodolfo J. Paiz
rpaiz@xxxxxxxxxxxxxx <mailto:rpaiz@xxxxxxxxxxxxxx>