1 |
On Mar 8, 2006, at 9:54 AM, A. Khattri wrote: |
2 |
|
3 |
> On Wed, 8 Mar 2006, John Jolet wrote: |
4 |
> |
5 |
>> I've had NO ssh portscans on my boxes since I moved them off of port |
6 |
>> 22. for security's sake, i won't tell you where I moved them to :) |
7 |
> |
8 |
> I dont think moving ssh from port 22 will stop portscans but it |
9 |
> will stop |
10 |
> brute force attacks directly on port 22. |
11 |
> |
12 |
Perhaps I was unclear. I haven't seen the large numbers of attempted |
13 |
logins with obvious dictionary lists of usernames on ssh since I |
14 |
moved it. |
15 |
|
16 |
I'll have to look into denyhosts...what does it do? I can't predict |
17 |
where I might be coming from, as I'm frequently at client locations |
18 |
and travelling. |
19 |
|
20 |
> I prefer to just run denyhosts on my servers instead: |
21 |
> |
22 |
> # eix denyhosts |
23 |
> * app-admin/denyhosts |
24 |
> Available versions: 1.1.2 1.1.2-r1 2.1 |
25 |
> Installed: 2.1 |
26 |
> Homepage: http://www.denyhosts.net |
27 |
> Description: DenyHosts is a utility to help sys admins |
28 |
> thwart ssh hackers |
29 |
> |
30 |
> |
31 |
> Found 1 matches |
32 |
> |
33 |
> -- |
34 |
> gentoo-user@g.o mailing list |
35 |
> |
36 |
|
37 |
-- |
38 |
gentoo-user@g.o mailing list |