[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: [cobalt-users] Disallowing remote root login
- Subject: RE: [cobalt-users] Disallowing remote root login
- From: <rpaiz@xxxxxxxxxxxxxx>
- Date: Sun Mar 25 19:55:45 2001
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
> root logins by telnet are disabled as standard on cobalts,
> but not on ftp afaik, you can add root to /etc/ftpusers to
> prevent that.
I think that's backwards; I don't recall any ftpd ever putting root in
ftpusers, but telnet has always allowed remote root login as I recall.
> if you comment out in.telnetd from /etc/initd.conf and
> install openssh that wont allow you in as root as default either.
We think alike. :) However, the *first* thing I did was to install
openssh and uninstall telnet altogether. But that allows a remote root
login as well, which is how this thread started. It turns out that there
is a PermitRootLogin parameter in etc/ssh/sshd_config that you can set
to no.
--
Rodolfo J. Paiz
rpaiz@xxxxxxxxxxxxxx <mailto:rpaiz@xxxxxxxxxxxxxx>