Zvakawanda kusasimba muOpenBSD

Nyanzvi kubva kuQualys Labs dzakawana akati wandei matambudziko ane chekuita nekugona kunyengedza zvirongwa zvine chekuita nepassword yekutarisa nzira dzinoshandiswa muBSD (analogous kuPAM). Mano ndeekupfuudza zita rekushandisa "-challenge" kana "-schallenge:passwd", iro rinozodudzirwa kwete sezita rekushandisa, asi sechisarudzo. Mushure meizvi, iyo system inogamuchira chero password. Anotambura, i.e. Nekuda kweizvozvo, kupinda kusina mvumo kunobvumidzwa nesevhisi smtpd, ldapd, radiusd. Iyo sshd sevhisi haigone kushandiswa, sezvo sshd yobva yaona kuti mushandisi "-challenge" haapo chaizvo. Iyo su program inoputsika kana ichiedza kuishandisa, nekuti inoedzawo kutsvaga iyo uid yemushandisi asiripo.

Kusagadzikana kwakasiyana kwakaburitswa mu xlock, mumvumo kuburikidza neS/Kiyi uye Yubikey, pamwe ne su, isina hukama nekutsanangura mushandisi we "-challenge". Kusagadzikana mu xlock kunobvumira mushandisi akajairwa kukwidziridza maropafadzo kuboka revanyori. Zvinogoneka kuwedzera maropafadzo kubva kuboka revanyori kuenda kumudzi wemushandisi kuburikidza nekushanda kusiri iko kweS/Kiyi uye Yubikey mvumo nzira, asi izvi hazvishande mukumisikidzwa kweOpenBSD yekumisikidza nekuti S/Kiyi uye mvumo yeYubikey yakadzimwa. Pakupedzisira, kusagadzikana mu su kunobvumira mushandisi kuwedzera miganhu pane zviwanikwa zvehurongwa, senge nhamba yeakavhurika faira descriptors.

Parizvino, kusasimba kwakagadziriswa, zvigadziriso zvekuchengetedza zviripo kuburikidza neyakajairwa syspatch(8) michina.

Source: linux.org.ru

Tenga inovimbika yekutambira kwemasaiti ane DDoS dziviriro, VPS VDS maseva 🔥 Tenga webhusaiti yakavimbika ine dziviriro yeDDoS, maseva eVPS VDS | ProHoster