Fedora Linux Support Community & Resources Center

Go Back   FedoraForum.org > Fedora 17/18 > Security and Privacy
FedoraForum Search

Forgot Password? Join Us!

Security and Privacy Sadly, malware, spyware, hackers and privacy threats abound in today's world. Let's be paranoid and secure our penguins, and slam the doors on privacy exploits.

Reply
 
Thread Tools Search this Thread Display Modes
  #16  
Old 6th July 2012, 07:30 AM
Bazu135's Avatar
Bazu135 Offline
Registered User
 
Join Date: Aug 2011
Location: Luton, UK
Age: 27
Posts: 291
linuxfirefox
Re: SSH Security

Right - will do. Thank you!
__________________
I generally use two tools - trial and error. They fix most things eventually!
Reply With Quote
  #17  
Old 6th July 2012, 02:07 PM
William Haller Offline
Registered User
 
Join Date: Jul 2005
Age: 52
Posts: 1,013
linuxchrome
Re: SSH Security

fwbuilder is also a GUI manager for iptables that is worth a look. It is used for building and distributing the rule sets - not for real time monitoring of what is going on. It will build rule sets for several other firewall systems and devices as well. It may seem like overkill at first, but it does make the development and deployment of common rule blocks across multiple systems much easier.
Reply With Quote
  #18  
Old 7th July 2012, 01:47 AM
stevea's Avatar
stevea Offline
Registered User
 
Join Date: Apr 2006
Location: Ohio, USA
Posts: 8,298
linuxfirefox
Re: SSH Security

If you disable passwords sshd_config ...
PasswordAuthentication no
ChallengeResponseAuthentication no

*BOTH* then you'll get no script kiddie attacks.

With either enabled you get a chance to try a password .......
Quote:
[stevea@crucibulum ~]$ ssh foobar@localhost
Password:
Password:
Password:
foobar@localhost's password:
Permission denied, please try again.
foobar@localhost's password:
Received disconnect from 127.0.0.1: 2: Too many authentication failures for foobar
Without BOTH set to "no" and only "PubkeyAuthentication yes"
Quote:
[stevea@crucibulum ~]$ ssh stevea@localhost
Permission denied (publickey).
[stevea@crucibulum ~]$
Even script kiddies aren't dumb enough to try to brute-force a key.
=========

Rate limiting connection isn't a bad idea to avoid DoS generally. But you wont get the attampts when you ...
__________________
None are more hopelessly enslaved than those who falsely believe they are free.
Johann Wolfgang von Goethe

Last edited by stevea; 7th July 2012 at 01:53 AM.
Reply With Quote
Reply

Tags
security, ssh

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Windows security question, or general security question glennzo Wibble 3 20th May 2012 07:14 PM
modern day security issues in the real world, backtrack, or fedora 16 security spin? kiwitoad Fedora Spins & Remixes 3 4th November 2011 12:14 AM
GNOME Security - A Remix of the Fedora Security Spin for Security Auditing sullivanmatt Fedora Spins & Remixes 0 31st May 2010 06:48 AM


Current GMT-time: 05:42 (Sunday, 19-05-2013)

TopSubscribe to XML RSS for all Threads in all ForumsFedoraForumDotOrg Archive
logo

All trademarks, and forum posts in this site are property of their respective owner(s).
FedoraForum.org is privately owned and is not directly sponsored by the Fedora Project or Red Hat, Inc.

Privacy Policy | Term of Use | Posting Guidelines | Archive | Contact Us | Founding Members

Powered by vBulletin® Copyright ©2000 - 2012, vBulletin Solutions, Inc.

FedoraForum is Powered by RedHat