"Susannah D. Rosenberg" wrote:
>
> Samantha Jo Moore wrote:
> > If you change this for /bin/false then they won't
> > be able to telnet in.
>
> yeah, but it still leaves rlogind and telnetd flapping in the wind. can
> you say "telnet to port 25", boys and girls?
>
> gaping security flaws are /bad/.
Summary:
/bin/false or /bin/true as a login shell prevents an individual from
logging in via telnet, ssh or rlogin.
Closing off rlogind and telnetd prevents ANYONE from logging in via
rlogin or telnet. (But not ssh. Which is usually deliberately permitted)
Jenn V.
--
"Do you ever wonder if there's a whole section of geek culture
you miss out on by being a geek?" - Dancer.
[EMAIL PROTECTED] Jenn Vesperman
http://www.simegen.com/~jenn/
_______________________________________________
techtalk mailing list
[EMAIL PROTECTED]
http://www.linux.org.uk/mailman/listinfo/techtalk
- RE: [techtalk] login restriction Samantha Jo Moore
- Re: [techtalk] login restriction Susannah D. Rosenberg
- Re: [techtalk] login restriction Aaron Malone
- Re: [techtalk] login restriction Susannah D. Rosenberg
- Re: [techtalk] login restriction Aaron Malone
- Re: [techtalk] login restricti... Susannah D. Rosenberg
- Re: [techtalk] login restr... Aaron Malone
- Re: [techtalk] login restr... Aaron Malone
- Re: [techtalk] login restr... Susannah D. Rosenberg
- Re: [techtalk] login restr... Telsa Gwynne
- Re: [techtalk] login restriction jenn
- Re: [techtalk] login restriction Magni Onsoien
- Re: [techtalk] login restriction Susannah D. Rosenberg
- Re: [techtalk] login restriction Patricia Jung
- Re: [techtalk] login restriction Eva Fenrich
- [techtalk] dump and restore? Brian Sweeney
- Re: [techtalk] dump and restore? Olivier Tharan
- Re: [techtalk] login restriction kelly
- RE: [techtalk] login restriction Brian Sweeney
- Re: [techtalk] login restriction Susannah D. Rosenberg
- RE: [techtalk] login restriction Fan, Laurel
