Catch up on stories from the past week (and beyond) at the Slashdot story archive

 



Forgot your password?
typodupeerror
For the out-of-band Slashdot experience (mostly headlines), follow us on Twitter, or Facebook. ×
Privacy

+ - Lax SSH key management a big problem

cstacy writes: Tatu Yionen, inventor of SSH, says he feels "a moral responsibility" to come out of retirement and warn that a "little-noticed problem" could jeopardize the security of much of the world's confidential data. He is referring to the management (or lack thereof) of SSH keys (i.e. "authorized_keys") files. He suggests that most organizations simply allow the SSH key files to be created, copied, accumulated, and abandoned, all over their network, making easy pickings for intruders to gain access.

Do you think this is a widespread problem?
How does your company manage SSH keys?
This discussion was created for logged-in users only, but now has been archived. No new comments can be posted.

Lax SSH key management a big problem

Comments Filter:

Counting in binary is just like counting in decimal -- if you are all thumbs. -- Glaser and Way

Working...