Vuln ssh passwdauth

System allows password based authentication


Passwords are the simplest and most easily defeated form of authentication. Passwords can be stolen, either directly or via software such as viruses or malware, or may be guessed or brute forced.

Linux offers other forms of authentication, such as key based authentication, which is much stronger than passwords. For example, keys can not be guessed or brute forced. A key would need to stolen by an attacker, and the credentials to access it would also need to be stolen.

[edit] Next Steps

Step 1: Log into the ASL GUI, click on Configuration and select the ASL configuration menu option. This will open the ASL configuration screen.

Step 3: Scroll down to SSH_PASSWORD_AUTH and set this to "no".

Step 4: Click the "update" button.

This will resolve this vulnerability.

