Re: [Hampshire] The Register: CERT warning about SSH attacks

Top Page

Reply to this message
Author: Damian Brasher
Date:  
To: Hampshire LUG Discussion List
Subject: Re: [Hampshire] The Register: CERT warning about SSH attacks
Graham Bleach wote:
> I don't understand how ssh-agent fixes the problem of weak keys.
>


It doesn't solve weak keys issues; when using password-less logins between
accounts you ensure that the designated user enters a password, which can
be supplied automatically as far as I understand, to 'unlock' the
certificates like a master key. As mentioned I'm investigating it's use to
add another layer of security. Weak keys are another thing.

Damian

--
Damian L Brasher
http://www.diap.org.uk - Quick and low-cost way to make an environment
more robust by backing up data in multiple places.