Don't give out ssh access
Don't give out ssh access
Posted Sep 1, 2011 6:40 UTC (Thu) by slashdot (guest, #22014)Parent article: kernel.org compromised
Well, it's probably not a good idea to give ssh access to 448 people.
Unfortunately, all current kernels including Linux seem to be inherently insecure due to a huge attack surface, so it would be best to acknowledge that, and stop pretending that there is a difference between non-root and root local access.
I'd suggest to only give ssh access to any web/git server to the administrator, and use standard upload mechanisms (git, ftp, WebDAV) for anyone else.
