LinuxQuestions.org
Welcome to the most active Linux Forum on the web.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - General
User Name
Password
Linux - General This Linux forum is for general Linux questions and discussion.
If it is Linux Related and doesn't seem to fit in any other forum then this is the place.

Notices


Reply
  Search this Thread
Old 07-12-2004, 01:21 AM   #1
BajaNick
Senior Member
 
Registered: Jul 2003
Location: So. Cal.
Distribution: Slack 11
Posts: 1,737

Rep: Reputation: 46
what is SSH, something to do with internet?


I am running a program called rootkit hunter and it says " warning, SSH v1 allowed " should i change this or is it not a big deal? I dont know what that is but I think it has something to do with security. Thanks for any response.
 
Old 07-12-2004, 01:30 AM   #2
MS3FGX
LQ Guru
 
Registered: Jan 2004
Location: NJ, USA
Distribution: Slackware, Debian
Posts: 5,852

Rep: Reputation: 361Reputation: 361Reputation: 361Reputation: 361
SSH v1 is an insecure early version of the SSH protocol, it should not be used if it can be helped.
 
Old 07-12-2004, 01:51 AM   #3
overlord73
Member
 
Registered: Apr 2004
Location: ..where no life dwells..
Posts: 541

Rep: Reputation: 30
yeah, SSH (secure shell) is a secure shell connection, but V1 should not be used like MS3FGX mentioned.
When rootkit hunter detects a running ssh, change your ssh version in /etc/ssh/sshd.conf (or similiar)
 
Old 07-12-2004, 02:05 AM   #4
macskeeball
Member
 
Registered: Feb 2004
Posts: 58

Rep: Reputation: 15
SSH provides multiple services, and two examples of this are SFTP (file transfer) and remote control from the command-line. SSH is encrypted, so it is much more secure than FTP and telnet. SSH 1 should be used instead of such things, but if possible use SSH 2 which is more secure instead.
 
Old 07-12-2004, 02:09 AM   #5
MS3FGX
LQ Guru
 
Registered: Jan 2004
Location: NJ, USA
Distribution: Slackware, Debian
Posts: 5,852

Rep: Reputation: 361Reputation: 361Reputation: 361Reputation: 361
SSH v1 allows passwords and usernames to be sniffed over the network, so it is no more secure than telnet.

It is slightly harder to sniff a SSH v1 password than a telnet one, but that is hardly a deterrent.
 
Old 07-12-2004, 02:19 AM   #6
macskeeball
Member
 
Registered: Feb 2004
Posts: 58

Rep: Reputation: 15
Interesting. Things for the heads up, though I've been using SSH v2 for some time now.
 
Old 07-12-2004, 08:18 PM   #7
BajaNick
Senior Member
 
Registered: Jul 2003
Location: So. Cal.
Distribution: Slack 11
Posts: 1,737

Original Poster
Rep: Reputation: 46
Quote:
Originally posted by overlord73
yeah, SSH (secure shell) is a secure shell connection, but V1 should not be used like MS3FGX mentioned.
When rootkit hunter detects a running ssh, change your ssh version in /etc/ssh/sshd.conf (or similiar)
Do I need this for internet connectivity? If not how do I eliminate it? I use guarddog and I do not have that enabled in the list. I just read it allows remote logins, Actually was just trying to do that with another Slack box on my router. I will

Last edited by BajaNick; 07-12-2004 at 08:28 PM.
 
Old 07-12-2004, 09:04 PM   #8
BajaNick
Senior Member
 
Registered: Jul 2003
Location: So. Cal.
Distribution: Slack 11
Posts: 1,737

Original Poster
Rep: Reputation: 46
I just upgraded to version 3.2 and I can do ssh -V and it show me 3.2 but when I run rootkit hunter it stills show s that I am using ssh1 ??
 
Old 07-12-2004, 11:57 PM   #9
MS3FGX
LQ Guru
 
Registered: Jan 2004
Location: NJ, USA
Distribution: Slackware, Debian
Posts: 5,852

Rep: Reputation: 361Reputation: 361Reputation: 361Reputation: 361
You don't need it for internet access.

And SSH v1 is still probably allowed in your server's configuration (meaning if someone connected with a SSH v1 client, it would allow it to connect), which is what rootkit is talking about.
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
SSH and Samba over internet FNC Linux - Networking 5 10-25-2007 08:49 AM
How do I setup SSH for internet incoming? PSIPHON Linux - Networking 15 09-02-2005 08:26 AM
SSH - How can i alllow someone SSH to my network from Internet - please help me b:z Linux - Networking 4 04-05-2005 07:21 AM
ssh tunnelling internet access bfkeats Linux - Networking 2 03-19-2004 03:13 PM
SSH Internet Problem alimharji Linux - Networking 1 02-02-2004 01:57 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - General

All times are GMT -5. The time now is 09:09 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration