Add new comment
Want to support HowtoForge? Become a subscriber!
|
SSH is a great, secure tool and these suggestions are great. I would add that if you need to be PCI compliant or face some other audit requirements, you might need something more than public-key authentication. With SSH public-key authentication:
There is no way to control which users have public key authorization There is no way to enforce passphrase complexity (or even be sure that one is being used) There is no way to expire a public key as I discussed here:http://www.howtoforge.com/secure_ssh_with_wikid_two_factor_authentication nick
Reply |



Recent comments
17 hours 5 min ago
21 hours 54 min ago
1 day 2 hours ago
1 day 5 hours ago
1 day 5 hours ago
1 day 5 hours ago
1 day 9 hours ago
1 day 10 hours ago
1 day 12 hours ago
1 day 19 hours ago