Here's a #security question that's been bugging me for a few weeks now:
I'm a professor and there are #Windows PCs in the classrooms. Login in a controlled domain, users have no admin perms etc.
Sometimes I #ssh from these machines to my #Linux box at my office to show some numerical stuff to the class.
Which security practice is more reasonable? Keep a (passworded) key file in the windows machines and risk an (unlikely) extraction or login with a password and risk keylogging? #secops
| Keep a key file in the windows machines | |
| Just type the password | |
| Why do you even have password login enabled? | |
| Keeping keys in public machines is a no-no |



