OpenSSH, PAM and kerberos

Dag-Erling Smørgrav des at des.no
Tue Sep 3 13:22:57 UTC 2013


Lev Serebryakov <lev at FreeBSD.org> writes:
> Why do we need separate daemon for it?  Why it could not be built-in
> to sshd itself?

sshd is just one of many applications in the system.

> One more daemon -- one more point of failure...

Or you can look at it the other way around: less copy-pasting between
applications and far fewer chances to screw it up.

DES
-- 
Dag-Erling Smørgrav - des at des.no


More information about the freebsd-security mailing list