Thanks both
"Simon Flood" <smflood@no-mx.forums.novell.com> wrote in message
news:aODBm.18781$7G7.10850@kovat.provo.novell.com. ..
> On 15/10/2009 02:23, JJB wrote:
>
>> Had occurred to me after a point my instructor had made, is if you need
>> SSH open to the Internet, that you'll want to put root in the DENYUSERS
>> list, so you would need another local POSIX user to login with first,
>> then SU after. I think you can use an eDir user with LUM on SSH, but if
>> eDir is having problems, and if root is set to deny, I'd be stuck without
>> any user to login with...
>
> Another way of achieving the same thing is edit /etc/ssh/sshd_config and
> add 'PermitRootLogin no'. I also add 'Protocol 2' to disable SSH v1 as
> it's not as secure as v2.
>
> I do create a single user during the install specifically so I can SSH to
> the server (having disabled root access as above). Once in I then 'su -'
> to become root.
>
> HTH.
> --
> Simon
>
> ------------------------------------------------------------------------
> Do you work with Novell technologies at a university, college or school?
> If so, your campus could benefit from joining the Novell Technology
> Transfer Partners (TTP) group. See www.novell.com/ttp for more details.
> ------------------------------------------------------------------------