rdiff-backup-users
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [rdiff-backup-users] Security problem with rdiff over ssh?


From: Marian 'VooDooMan' Meravy
Subject: Re: [rdiff-backup-users] Security problem with rdiff over ssh?
Date: Fri, 28 May 2010 01:37:47 +0200
User-agent: Mozilla/5.0 (Windows; U; Windows NT 6.0; en-US; rv:1.9.1.9) Gecko/20100317 Thunderbird/3.0.4

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Gereetings,

On 28. 5. 2010 1:24, Matthew Miller wrote:
[...]
> And you can tighten the former by restricting where the private key can be
> used from and what command it can run, using from='host' and
> command='rdiff-backup' on the remote system. That way, if someone does steal
> the key, all that can be done is rdiff-backup.
>
> (This is a good idea whether or not you run as root remotely.)

Thank you very much for this idea, I will reconfig my rdiff-backup
solution on my machines this way ASAP, since client runs as root and
private key for SSH is in the local file...

Best,
VooDooMan
.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (MingW32)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAkv/AksACgkQ1b4D/nruUWdwdgCfSu7Unp597yQcfEghDOhx6FVK
ifoAoLt/gmy24koPmpaUzqBYSmsWDEzr
=zekK
-----END PGP SIGNATURE-----



reply via email to

[Prev in Thread] Current Thread [Next in Thread]