l i n u x - u s e r s - g r o u p - o f - d a v i s
L U G O D
 
Next Meeting:
September 2: Social Gathering
Next Installfest:
Sat. Sept. 27, 10am-6pm [Tentative]
Latest News:
Aug. 19: Siafoo slides and photos online
Page last updated:
2003 Aug 04 18:33
Events
 Meetings
 Installfests
 Demos
 Photos
Services
 Library
 LERT
 Jobs
 Documents
Interact
 Mailing Lists
 - Search
 - Archives
 Chat
About Us
 Members
 Projects
 Testimonials
 Call for Speakers
 Why Not MS?
 Finances
 Sponsors

^Home
?Search
?News & RSS
?Calendar
@Contact Us
$Buy Stuff
=Printable


The following is an archive of a post made to our 'vox-tech mailing list' by one of its subscribers.

Report this post as spam:

(Enter your email address)
[vox-tech] Securing SSH
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[vox-tech] Securing SSH



I know the title is kind of redundant, but I was curious if there is 
anything beyond these couple of steps that I have taken to secure ssh?

First I have edited the /etc/securetty to contain only these entries:
tty1
tty2
tty3
tty4
tty5
tty6

This is to allow root to login from the local console only.  I have also 
edited the sshd_conf file to disallow root logins.  This box is sitting 
behind a router that only has port 22 forwarded to this machine and I have 
setup the router so that it does not respond to ping request from the 
outside world.  The final thing, I could think of is to set hosts.allow to 
the certain IP’s that I might connect from, but I would like to connect 
from anywhere to this machine.  Is there anything else that I might 
consider to help keep the machine secure?
_______________________________________________
vox-tech mailing list
vox-tech@lists.lugod.org
http://lists.lugod.org/mailman/listinfo/vox-tech



Hosting provided by:
Sunset Systems
Sunset Systems offers preconfigured Linux systems, remote system administration and custom software development.

CD Burns Wanted!

LUGOD: Linux Users' Group of Davis
1105 Kennedy Place, Suite 1, Davis, CA 95616
Contact Us

LUGOD is a 501(c)7 non-profit organization
based in Davis, California
and serving the Sacramento area.
"Linux" is a trademark of Linus Torvalds.

Sponsored in part by:
PC Memory Store
PC Memory Store donated give-aways to LUGOD in early 2008.