LinuxQuestions.org
Help answer threads with 0 replies.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 02-10-2006, 12:44 PM   #1
namit
Member
 
Registered: Aug 2005
Distribution: Debian
Posts: 355

Rep: Reputation: 30
Make SSH more secure


I am just learning about linux am running ssh on my server debian server and just wondering what the best way would be to lock down ssh.

Do not like the idea that people can just say go into putty and type in my ip address and get up my login prompt.

Maybe this is how everyone has it and its ok but i am not that happy with having it this way.

Am i being paranoid?

Or is there a better way of setting up ssh?
 
Old 02-10-2006, 01:02 PM   #2
bulliver
Senior Member
 
Registered: Nov 2002
Location: British Columbia, Canada
Distribution: Gentoo x86_64; FreeBSD; OS X
Posts: 3,764
Blog Entries: 4

Rep: Reputation: 78
Quote:
Do not like the idea that people can just say go into putty and type in my ip address and get up my login prompt.
Use key-based authentication.
Disable password authentication.
Disable root logins
Run ssh on non-standard port (not real security, but gets rid of scripted attacks)
 
Old 02-10-2006, 01:14 PM   #3
namit
Member
 
Registered: Aug 2005
Distribution: Debian
Posts: 355

Original Poster
Rep: Reputation: 30
thanks have done that
 
Old 02-10-2006, 02:03 PM   #4
int0x80
Member
 
Registered: Sep 2002
Posts: 310

Rep: Reputation: Disabled
Here are some additional links to check out:

http://www.linuxsecurity.com/resourc...s.en.html#s5.1
http://www.debian-administration.org/articles/87
 
Old 02-10-2006, 03:43 PM   #5
spooon
Senior Member
 
Registered: Aug 2005
Posts: 1,755

Rep: Reputation: 51
also install denyhosts ("apt-get install denyhosts" from unstable)
 
Old 02-10-2006, 09:51 PM   #6
taylor_venable
Member
 
Registered: Jun 2005
Location: Indiana, USA
Distribution: OpenBSD, Ubuntu
Posts: 892

Rep: Reputation: 43
If you only need access to the service from certain machines, use a firewall to restrict access to port 22 on your server.
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
How Secure is SSH? AvatarofVirgo Linux - Security 8 08-14-2011 12:37 PM
secure connection without SSH Mr. DM Linux - General 3 05-17-2005 04:53 AM
Secure x-forwarding over SSH postrational Linux - Networking 1 02-01-2005 11:04 AM
How can I test if my SSH is secure nutthick Linux - Security 2 12-15-2004 10:59 AM
how to secure ssh chongluo Linux - Security 3 11-04-2004 07:16 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 01:26 PM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration