Ian Molton
Wed Feb 18 03:49:47 PST 2004

On Wed, 18 Feb 2004 03:53:12 -0600
Dagmar d'Surreal wrote:

> In practice, unless you have several hundred users hitting a machine at
> once, someone trying to guess a password manually is going to show up
> pretty well.  Users don't actually mess up all _that_ often.  PAM can
> also disable accounts after a certain number of failed attempts.

Is there any reason not to use public key crypto on logs? that way only root can decrypt them and the key neednt be stored locally. then you could log pretty much whatever you pleased.

