Am 10.06.2011 um 00:02 schrieb Eero Volotinen: > > Well, some say that it's possible with pam hacks. > > main problem is that openssh public key does not contains expiry > information (is not possible to expire public keys). > it migth be possible with openssh certificates? As I understand it (following the arstechnica link, then using the RequiredAuthentication keyword as a new search term) - it's only impossible with openssh. _______________________________________________ CentOS mailing list CentOS@xxxxxxxxxx http://lists.centos.org/mailman/listinfo/centos