[HPADM] Re: /etc/securetty & logging in as root directly using ssh

From: LHartung (list@ioscan.de)
Date: Fri Sep 29 2006 - 17:26:41 EDT


Neil Paniraj schrieb:
> Fellow Admins:
>
>
> I tried logging into one of my servers here as root directly using "ssh host_name -l root" and was able to get into the server after I keyed in the password.
>
> I updated the /etc/securetty file by entering "console".
>
> I am still able to getinto the host as root.
>
> I was under the impression that adding "console" to the securetty file I could avoid loggin in as root.
>
> What am I doing wrong? Any suggestions?
>
> NEIL
>
>
>
> --
> ---> Please post QUESTIONS and SUMMARIES only!! <---
> To subscribe/unsubscribe to this list, contact majordomo@dutchworks.nl
> Name: hpux-admin@dutchworks.nl Owner: owner-hpux-admin@dutchworks.nl
>
> Archives: ftp.dutchworks.nl:/pub/digests/hpux-admin (FTP, browse only)
> http://www.dutchworks.nl/htbin/hpsysadmin (Web, browse & search)
>
>
Hi,

for ssh you need to edit sshd_config and add the line

DenyUsers root

and reload ssh daemon

Lars

-- 
http://www.lhits.eu
http://blog.linuri.de
http://www.kleinwalsertal-bilder.de
--
             ---> Please post QUESTIONS and SUMMARIES only!! <---
        To subscribe/unsubscribe to this list, contact majordomo@dutchworks.nl
       Name: hpux-admin@dutchworks.nl     Owner: owner-hpux-admin@dutchworks.nl
 
 Archives:  ftp.dutchworks.nl:/pub/digests/hpux-admin       (FTP, browse only)
            http://www.dutchworks.nl/htbin/hpsysadmin   (Web, browse & search)


This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 11:02:54 EDT