3 ms·
seriously, password-based auth... have ppl not heard of public key authentication? allowing password-based auth in sshd is plain stupid. _always_ use pubkey au
by conformal 13y ago
seriously, password-based auth... have ppl not heard of public key authentication?
allowing password-based auth in sshd is plain stupid. _always_ use pubkey auth, it's a 1-line change in /etc/ssh/sshd_config.
- dwild 13y agoCan they really bruteforce a 12 characters password? I don't think so... What happen when you lose your key? How do you backup your key?
- JshWright 13y agoFor most cases, gpg encrypt it and stick it in Dropbox. If you're super paranoid, copy it to some physical media that you can store securely.
- MattJ100 13y agoThe same way you back up all your other important and private files? That is, frequently and securely. Also note that you can have multiple keys, potentially one per device (useful in case a device could get stolen).