Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

对于公钥的检查我觉得可以再优化 #7

Open
ZhaoYukai opened this issue Jun 22, 2019 · 0 comments
Open

对于公钥的检查我觉得可以再优化 #7

ZhaoYukai opened this issue Jun 22, 2019 · 0 comments

Comments

@ZhaoYukai
Copy link

在对于公钥的检查那里,我看脚本中是这么检查的:
if [ -e /root/.ssh/*.pub ];then
不过如果这个机器被恶意注入攻击者的公钥,我觉得可以再检查authorized_keys这个文件或者其他名字的文件是否存在,以及在/etc/.ssh下面是否有文件存在

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant