[CentOS] ultrasecure sshd server

Ljubomir Ljubojevic office at plnet.rs
Fri Jun 10 13:16:36 UTC 2011


Markus Falb wrote:
> On 10.6.2011 10:35, Ljubomir Ljubojevic wrote:
>> Robert Spangler wrote:
>>> On Thursday 09 June 2011 17:34, the following was written:
>>>
>>>>  How to configure sshd to required both ssh public key and user
>>>>  password also? yes, stupid, but required on my setup..
>>> Have you thought about securing your ssh keys with a pasword? I do that here 
>>> so if someone would happen to get a hold of my keys they still could not use 
>>> them.  I am guessing that is why you are looking for both keys and passwords.
>>>
>>>
>> Not really. My view is so he can authenticate from his own PC without 
>> the need to type the password, but if he is on someone else's system he 
>> whould use regular password. That is what I would like to be able to do.
> 
> And why are you not able to ? Standard ssh setup falls back to password
> authentication if no key available.
> 
> If you dont want type password every time use ssh-agent (there is a
> aequivalent thing in windows provided by putty I think but forgot its
> name). You will need to type the passphrase only once.
> 

I should have been little more precise. The truth is I never found time 
to try/solve it, always something else to do. But I *would* like to set 
it up. I already have direct root access to my units via ssh, and I have 
denyhosts guarding me from crackers, so it is not something I can not 
live without.

Ljubomir



More information about the CentOS mailing list