Re: Security basics



On 03/10/2007, Karl Larsen <k5di@xxxxxxxxxx> wrote:
I have sure heard a LOT about security updates and I have had my own
problems. For years I thought the only thing necessary was a good root
password. This year I found out with ssh around you need a good password
for your own login name. My problem was caused by having a super poor
login password which was my last name. Since the login name was karl it
followed.

Fixed that problem with a real hard password for karl and root has a
changable hard password. In my olden working days we had safes for State
Secrets and they had what were called "one hour" locks and 30 minute
burn protection. We changed the combination every 6 months. Drove me bats!

So the question is this: If I have passwords that are safe for an
hour, is not my computer safe from tampering? I guess the Internet could
send you a file that works to discover passwords and then emails them to
the sender? But this is hard to do.

Have a read of this:

http://www.la-samhna.de/library/brutessh.html

Jonathan.

ps. You did erase and reinstall your system after it was compromised, right?

--
fedora-list mailing list
fedora-list@xxxxxxxxxx
To unsubscribe: https://www.redhat.com/mailman/listinfo/fedora-list



Relevant Pages

  • Security basics
    ... This year I found out with ssh around you need a good password for your own login name. ... Fixed that problem with a real hard password for karl and root has a changable hard password. ... If I have passwords that are safe for an hour, is not my computer safe from tampering? ...
    (Fedora)
  • Re: I cannot login coz bash is deinstalled
    ... A errer occurs when i try to login with my user or root. ... This is one of the reasons to leave the root shell at a safe default. ... a different super-user account could be created to avoid this problem -- leaving root with it's mostly stock (safe) setup. ...
    (freebsd-questions)
  • Re: I cannot login coz bash is deinstalled
    ... A errer occurs when i try to login with my user or root. ... This is one of the reasons to leave the root shell at a safe default. ... a different super-user account could be created to avoid this problem -- leaving root with it's mostly stock (safe) setup. ...
    (freebsd-questions)
  • Root by default
    ... Is it posible to login as root by default in local? ... I know this can be a huge security hole, but the computer is in a safe ...
    (linux.redhat.misc)
  • SUMARY: Cant login as root
    ... As a result, i was not able to log in as root, neither create a new ... Asunto: RE: Can't login as root ... > console. ... > If we log as any other user everythig is ok, but we cannot either do su-. ...
    (Tru64-UNIX-Managers)