Add new comment
Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
|
SSH is a great, secure tool and these suggestions are great. I would add that if you need to be PCI compliant or face some other audit requirements, you might need something more than public-key authentication. With SSH public-key authentication:
There is no way to control which users have public key authorization There is no way to enforce passphrase complexity (or even be sure that one is being used) There is no way to expire a public key as I discussed here:http://www.howtoforge.com/secure_ssh_with_wikid_two_factor_authentication nick
Reply |





Recent comments
1 hour 45 min ago
3 hours 27 min ago
5 hours 53 min ago
5 hours 59 min ago
10 hours 33 min ago
12 hours 34 min ago
15 hours 57 min ago
18 hours 4 min ago
18 hours 15 min ago
20 hours 41 min ago