Linux.com

Re:yes, encrypt, but ....

Posted by: Anonymous Coward on June 07, 2005 10:37 AM
For even better security with SSH, disallow passwords and rely on RSA keys and <tt>ssh-agent</tt>. As far as I can tell it's better to allow root, at least for servers; most, if not all, rootkits take over <tt>su</tt> and <tt>login</tt>; if you never type a password at the system, they can't steal it.

#

Return to The Seventh Commandment of system administration