Hi,

Jonathan Yu <jaw...@cpan.org> writes:
> On Sun, Jul 27, 2014 at 4:54 AM, Marc Haber <mh+debian-de...@zugschlus.de>
> wrote:
>
>> Why would one use such a tool? passphraseless keys exist, and can be
>> configured to be secure.
>
> This sounds interesting. Do you have a link to some documentation on this
> technique?

It is possible to restrict keys in .ssh/authorized_keys so that they are
only allowed to run specific commands, see the 'command="command"' bit in
man:sshd(8). One probably wants to combine this with no-port-forwarding
and similar options.

Ansgar


-- 
To UNSUBSCRIBE, email to debian-devel-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org
Archive: https://lists.debian.org/87k36zdj9x....@deep-thought.43-1.org

Reply via email to