Re: configure ssh-access

2003-07-07 Thread Kenneth Macdonald Karlsen
[EMAIL PROTECTED] wrote: Hi! I want to make ssh-access possible only from a restricted number of hosts - those that are named in /etc/hosts.allow. Users who want to login have a DynDNS host-name that shall be listed in hosts.allow to make it possible for users with a dial-up internet connection

Re: configure ssh-access

2003-07-07 Thread Kenneth Macdonald Karlsen
[EMAIL PROTECTED] wrote: Hi! I want to make ssh-access possible only from a restricted number of hosts - those that are named in /etc/hosts.allow. Users who want to login have a DynDNS host-name that shall be listed in hosts.allow to make it possible for users with a dial-up internet connection,

Re: configure ssh-access

2003-07-07 Thread François TOURDE
Le 12240ième jour après Epoch, Mario Ohnewald écrivait: > Hello! > >>-Original Message- >>From: Anne Carasik [mailto:[EMAIL PROTECTED] >>Sent: Monday, July 07, 2003 5:05 PM >>To: [EMAIL PROTECTED] >>Cc: debian-security@lists.debian.org >>Subject: Re: configure ssh-access >> >> >>Why not ju

Re: configure ssh-access

2003-07-07 Thread François TOURDE
Le 12240ième jour après Epoch, Mario Ohnewald écrivait: > Hello! > >>-Original Message- >>From: Anne Carasik [mailto:[EMAIL PROTECTED] >>Sent: Monday, July 07, 2003 5:05 PM >>To: [EMAIL PROTECTED] >>Cc: [EMAIL PROTECTED] >>Subject: Re: configure ssh-access >> >> >>Why not just limit the ac

RE: configure ssh-access

2003-07-07 Thread Mario Ohnewald
Hello! >-Original Message- >From: Anne Carasik [mailto:[EMAIL PROTECTED] >Sent: Monday, July 07, 2003 5:05 PM >To: [EMAIL PROTECTED] >Cc: debian-security@lists.debian.org >Subject: Re: configure ssh-access > > >Why not just limit the access through SSH public key? >It sounds like that woul

Re: Strongest linux - kernel patches

2003-07-07 Thread Michelle Konzack
Am 02:55 2003-07-03 +0200 hat Luis Gomez - InfoEmergencias geschrieben: > >On Miércoles, 2 de Julio de 2003 15:05, Preben Randhol wrote: >> What about: http://www.nsa.gov/selinux/ ? > >For the sake of God, how in hell can we associate "nsa.gov" with "secure"? > >Excuse me if I'm bullshitting, but I

[mdz@debian.org: [SECURITY] [DSA-340-1] New x-face-el packages fix insecure temporary file creation]

2003-07-07 Thread Tom Goulet (UID0)
The signature is bad at my end, and my end usually works so it looks like something mangled your message. -- Tom Goulet mail: [EMAIL PROTECTED] UID0 Unix Consultingweb: em.ca/uid0/ --- Begin Message --- -BEGIN PGP SIGNED MESSAGE- Hash: SH

Re: configure ssh-access

2003-07-07 Thread Anne Carasik
Why not just limit the access through SSH public key? It sounds like that would accomplish what you're trying to do. -Anne [EMAIL PROTECTED] grabbed a keyboard and typed... > Hi! > > I want to make ssh-access possible only from a restricted > number of hosts - those that are named in /etc/hosts.

RE: configure ssh-access

2003-07-07 Thread Mario Ohnewald
Hello! >-Original Message- >From: Anne Carasik [mailto:[EMAIL PROTECTED] >Sent: Monday, July 07, 2003 5:05 PM >To: [EMAIL PROTECTED] >Cc: [EMAIL PROTECTED] >Subject: Re: configure ssh-access > > >Why not just limit the access through SSH public key? >It sounds like that would accomplish wh

Re: Strongest linux - kernel patches

2003-07-07 Thread Michelle Konzack
Am 02:55 2003-07-03 +0200 hat Luis Gomez - InfoEmergencias geschrieben: > >On Miércoles, 2 de Julio de 2003 15:05, Preben Randhol wrote: >> What about: http://www.nsa.gov/selinux/ ? > >For the sake of God, how in hell can we associate "nsa.gov" with "secure"? > >Excuse me if I'm bullshitting, but I

[mdz@debian.org: [SECURITY] [DSA-340-1] New x-face-el packages fix insecure temporary file creation]

2003-07-07 Thread Tom Goulet (UID0)
The signature is bad at my end, and my end usually works so it looks like something mangled your message. -- Tom Goulet mail: [EMAIL PROTECTED] UID0 Unix Consultingweb: em.ca/uid0/ --- Begin Message --- -BEGIN PGP SIGNED MESSAGE- Hash: SH

Re: configure ssh-access

2003-07-07 Thread Anne Carasik
Why not just limit the access through SSH public key? It sounds like that would accomplish what you're trying to do. -Anne [EMAIL PROTECTED] grabbed a keyboard and typed... > Hi! > > I want to make ssh-access possible only from a restricted > number of hosts - those that are named in /etc/hosts.

Re: configure ssh-access

2003-07-07 Thread Adam ENDRODI
On Mon, Jul 07, 2003 at 11:08:38AM +0200, [EMAIL PROTECTED] wrote: > > I'd prefer to specify the rules for loggin into the machine > in the sshd_config-file, not in hosts.allow/deny. > But the AllowHosts/DenyHosts-options that could be used in > /etc/sshd_config earlier seem to be not any > longe

Re: configure ssh-access

2003-07-07 Thread Alan James
On Mon, 7 Jul 2003 11:08:38 +0200, [EMAIL PROTECTED] wrote: >The problem is that I can only login to the ssh-machine >when I enter the IP-address to the hosts.allow file. >Specifying the hosts DNS-name does not work! Thats probably because it does a reverse lookup on the connecting ip to see if i

configure ssh-access

2003-07-07 Thread klaus
Hi! I want to make ssh-access possible only from a restricted number of hosts - those that are named in /etc/hosts.allow. Users who want to login have a DynDNS host-name that shall be listed in hosts.allow to make it possible for users with a dial-up internet connection, too. BUT: The problem is

Re: configure ssh-access

2003-07-07 Thread Adam ENDRODI
On Mon, Jul 07, 2003 at 11:08:38AM +0200, [EMAIL PROTECTED] wrote: > > I'd prefer to specify the rules for loggin into the machine > in the sshd_config-file, not in hosts.allow/deny. > But the AllowHosts/DenyHosts-options that could be used in > /etc/sshd_config earlier seem to be not any > longe

Re: configure ssh-access

2003-07-07 Thread Alan James
On Mon, 7 Jul 2003 11:08:38 +0200, [EMAIL PROTECTED] wrote: >The problem is that I can only login to the ssh-machine >when I enter the IP-address to the hosts.allow file. >Specifying the hosts DNS-name does not work! Thats probably because it does a reverse lookup on the connecting ip to see if i

configure ssh-access

2003-07-07 Thread klaus
Hi! I want to make ssh-access possible only from a restricted number of hosts - those that are named in /etc/hosts.allow. Users who want to login have a DynDNS host-name that shall be listed in hosts.allow to make it possible for users with a dial-up internet connection, too. BUT: The problem is