question about ssh

James McKenzie jjmckenzie51 at earthlink.net
Fri Dec 31 05:34:36 UTC 2004


Ed Wilts wrote:
> On Thu, Dec 30, 2004 at 09:19:35PM +0800, chi wrote:

> My recommended approach would be to block *all* incoming connections to
> sshd via either /etc/hosts.deny or via iptables.  Then, add only those
> hosts or subnets who you know need incoming access.  In my case, I allow
> incoming access from my office subnet and from a trusted colleague but
> everybody else is blocked.  

Example iptables lines please?

I think the idea of using port 2222 is a better one.

James McKenzie






More information about the fedora-list mailing list