Linux.com

Re:Don't moan about Sun

Posted by: Anonymous Coward on March 29, 2006 03:20 PM
SunSSH isn't anywhere close to current.
It was forked from either 3.6 or 3.7. It does NOT implement the UseDNS nor ReverseNameLookup config controls, meaning you CANNOT turn of DNS lookup if using it in an environment where DNS is not available.

It also has a major issue with public key authentication, in that if you lock a users directory down so that permissions are highly restrictive, the public key authentication breaks, at least in Solaris 9's version of SunSSH.

I've had multiple discussions with Sun on these 2 issues, and Sun has refused to fix the Bugs, even though I've proven beyond a shadow of a doubt that they exist, and did not exist in the code that was forked to generate their bastard step-child.

#

Return to Interview: Theo de Raadt of OpenBSD