Re: recompile sshd with OPIE?
Dag-Erling Sm鷨grav wrote:
> freebsd-security@auscert.org.au writes:
>>Can this be achieved within the regular system build process, or must I
>>roll my own?
>
> You need to change src/crypto/openssh/config.h so it says
>
> /* #undef PAM */
> #define SKEY 1
> #define OPIE 1
>
> instead of
>
> #define PAM 1
> /* #undef SKEY */
> /* #undef OPIE */
>
> then rebuild world.
Aha! I bet ports/security/fwtk would be much happier if SKEY was around.
Were these enabled some time ago and since disabled...?
--
-Chuck
_______________________________________________
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
討論串 (同標題文章)
完整討論串 (本文為第 3 之 7 篇):