I have default 8.0-RELEASE isntallation here, all these options mentioned by Matthew Dillon are disabled by default:
Code:
# < /etc/ssh/sshd_config egrep "#(UsePAM|ChallengeResponseAuthentication|PasswordAuthentication)"
#PasswordAuthentication no
#ChallengeResponseAuthentication yes
#UsePAM yes
... am I missing something here?