How to disable ipchains for sshd

John Aldrich john at chattanooga.net
Thu Dec 2 11:58:56 UTC 2004


On Thursday 02 December 2004 06:47 am, Paul Howarth wrote:
> John Aldrich wrote:
> > It appears that the default firewall rules in FC3 /deny/ ssh access to
> > the system. How do I go about writing rules to permit ssh access? I have
> > maybe 3 or four IP addresses that need to be able to log into my linux
> > box, other than that, no one else needs to be able to access it.
>
> Simplest way: run system-config-securitylevel and select SSH to be a
> trusted service on the "Firewall options" tab. This will open the ssh port
> to all IP addresses rather than just the three or four, but the rest of the
> default iptables settings will be running as normal.
>
Thanks, Paul.. that's even better! :-) Then again, maybe I'll go back to the 
suggestion Andrei had of configuring it just for the 3 or 4 IPs I need... 
considering I've had hack attempts to my ssh port in the past... :-) We'll 
just have to keep an eye on /var/log/secure. :-)
'Preciate it guys!
 John




More information about the fedora-list mailing list