Disable SSH direct root login...

From: Harihar Krishnan (harik_at_bma.gov.bh)
Date: 03/21/04

  • Next message: Philip: "SUMMARY: TCP Window size strange behaviour"
    Date: Sun, 21 Mar 2004 12:02:53 +0300
    To: 'Tru64 User Group' <tru64-unix-managers@ornl.gov>
    
    

    On removing the "ptys" line from /etc/securettys, I could not login directly
    as root when using the Windows telnet utility. However, after implementing
    SSH on the hosts, the direct root login works. How do I disable it for the
    SSH clients?

    Harihar K

    ===========================================================================
    DISCLAIMER:
    “This communication is intended solely for the named recipient and others
    authorized to receive it. It may contain confidential or legally privileged
    information. If you are not the intended recipient, please notify us
    immediately, and note that any disclosure, copying, distribution or action
    you may take in reliance on this communication is strictly prohibited and
    may be unlawful. Unless indicated otherwise, this communication is not
    intended nor should it be taken to create any legal relations, contractual
    or otherwise. Bahrain Monetary Agency(BMA) is neither liable for the proper
    and complete transmission of the communication, nor for any delay in its
    receipt. Whilst BMA undertakes all reasonable efforts to screen outgoing
    e-mails for viruses, it cannot be held liable for any viruses transmitted by
    this e-mail.”
    ===========================================================================


  • Next message: Philip: "SUMMARY: TCP Window size strange behaviour"

    Relevant Pages

    • SUMMARY: Disable SSH direct root login...
      ... the direct root login works. ... “This communication is intended solely for the named recipient and others ... e-mails for viruses, it cannot be held liable for any viruses transmitted by ...
      (Tru64-UNIX-Managers)
    • RE: Linux hacked
      ... Also, what exactly did the history file show, can you paste it into a mail ... > First let me say I'm a security novice. ... > been unsuccessful in getting root back. ... > via ssh but you could su in once logged in as one of three users. ...
      (Security-Basics)
    • Re: Linux hacked
      ... To find out what kernel version you are running, type "uname -a" without ... > been unsuccessful in getting root back. ... > via ssh but you could su in once logged in as one of three users. ...
      (Security-Basics)
    • RE: Linux hacked
      ... hack the box, pull the drive and save it. ... Use the newest versions of Gentoo, Apache, SSH, PHP and Squirl Mail. ... been unsuccessful in getting root back. ... I found a hidden directory /var/tmp/.tmp that has a bunch of directories ...
      (Security-Basics)
    • RE: Linux hacked
      ... Was any of the sites running a php nuke or another portal or system that is vuln ... been able to use that with a locla root exploit to gain root on the machine. ... > hack the box, pull the drive and save it. ... > Use the newest versions of Gentoo, Apache, SSH, PHP and Squirl Mail. ...
      (Security-Basics)