[kwlug-disc] Tightening up SSH

Adam Glauser adamglauser at gmail.com
Tue Jul 20 10:32:15 EDT 2010


On 20/07/2010 10:14 AM, Andrew Kohlsmith (mailing lists account) wrote:
> I guess we need a poor-man's RSA SecurID.
[...]
> Are there hooks in the ssh protocol (and in Ubuntu) to receive a challenge
> from the remote and display it to the user, gathering a response and sending
> it back?

This seems to be what the YubiKey that Chris mentioned upthread is 
trying to do.  He says there is supposed to be a PAM module available. 
It claims it is better than a one-time pad, and to not require a 
challenge/response, though I haven't had time to figure out how it works 
exactly.



More information about the kwlug-disc_kwlug.org mailing list