Using ssh-keys for kerberos authentication

Ken Hornstein kenh at cmf.nrl.navy.mil
Thu Oct 14 08:46:13 EDT 2004


>> Why not just use Kerberos authentication at the ssh layer though.
>People like ssh-keys and they are considered rather secure, passwords are 
>not (they are more vulnerable to brute-force-attacks).

I know plenty of people who have gotten 0wned because of widespread
use of ssh-keys (more than I know have gotten 0wned because of a
Kerberos password being compromised, and I know lots of Kerberos
sites).  To each his or her own.

--Ken


More information about the Kerberos mailing list