[WBEL-users] SSH Hack/Login attempts

Johnny Hughes mailing-lists@hughesjr.com
Mon, 09 Aug 2004 07:22:59 -0500


On Sun, 2004-08-08 at 19:37, Nats wrote:
> Hmmm... IMOO, if you are always locally present on your machine and you have
> other ppl maintaining your servers remotely, why not filter ip addresses
> that can only SSHd to machines, just allow those legal and known ip
> addresses that has official rights to your servers, iptables can do this
> nicely...
> 
Great idea ... _IF_ the persons that need access have a static IP
address. If they don't, your stuck.

Another solution might be to set SSHD to listen on a port other than 22
and open that port in your firewall.

Johnny Hughes
http://www.hughesjr.com