OpenPAM/SSHD privacy hole (FreeBSD 9.2+ affected)

Andrei az at azsupport.com
Mon Oct 28 19:57:08 UTC 2013


On Sun, 27 Oct 2013 22:50:12 +0100
Dag-Erling Smørgrav <des at des.no> wrote:

> "Steven Hartland" <killing at multiplay.co.uk> writes:
> > Out of curiosity whats the reasoning behind it doing things?
> 
> Less confusion when proxying one SSH connection through another, for
> one.  FWIW, it mirrors what most Linux distros do.
How about just IP as Linux do:

az at az:~$ ssh test at 1.2.3.4
test at 1.2.3.4's password: 

I think if you change the hostname to IP (without Linux style "'s" at
the end of IP) in the default settings, in this case everyone will be
happy. :)

Kind regards,
Andrei.


More information about the freebsd-security mailing list