Security Basics mailing list archives
Re: Securing SSH
From: Miles Stevenson <miles () mstevenson org>
Date: Mon, 12 Jan 2004 13:47:14 -0500
The SANS Institute has an excellent "Step-by-Step" guide for securing SSH: https://store.sans.org//store_item.php?item=86 You can also find lots of good stuff in the SANS reading room if you can't afford to buy the step by step guide: http://www.sans.org/rr/ Good luck. On Fri, 2004-01-09 at 18:53, Roland Venter wrote:
I need to manage several servers remotely via SSH, I'm interested in ways to secure the connection and prevent unauthorised access. My thoughts: Limit access to only allow remote connections from our management network via iptables rules. Works but what if our ISP changes our fixed IP, which means we are effectively locked out from all the servers and requires a site visit to update the rules. We also need to provide access to engineers working from home using dialup, etc Some sort of client certificates to supplement username and password, Recommendations on securing the SSH daemon etc Any ideas and tips or random thoughts appreciated Cheers, Roland --------------------------------------------------------------------------- Ethical Hacking at InfoSec Institute. Mention this ad and get $720 off any course! All of our class sizes are guaranteed to be 10 students or less. We provide Ethical Hacking, Advanced Ethical Hacking, Intrusion Prevention, and many other technical hands on courses. Visit us at http://www.infosecinstitute.com/securityfocus to get $720 off any course! ----------------------------------------------------------------------------
-- Miles Stevenson miles () mstevenson org
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- Securing SSH Roland Venter (Jan 09)
- Re: Securing SSH security (Jan 12)
- Re: Securing SSH Jude Naidoo (Jan 12)
- RE: Securing SSH Vinicius Moreira Mello (Jan 12)
- Re: Securing SSH Kevin Saenz (Jan 12)
- RE: Securing SSH Ethan King (Jan 12)
- Re: Securing SSH Brian C. Lane (Jan 12)
- Re: Securing SSH Miles Stevenson (Jan 12)
- Re: Securing SSH Joerg Over Dexia (Jan 12)
- Re: Securing SSH Kaushik Mukherjee (Jan 13)
- Re: Securing SSH Luca Falavigna (Jan 13)
- <Possible follow-ups>
- RE: Securing SSH Shawn Jackson (Jan 14)