More SSH 'trolling'

Rodolfo J. Paiz rpaiz at simpaticus.com
Thu Oct 14 16:18:13 UTC 2004


On Thu, 2004-10-14 at 17:06 +0200, Alexander Dalloz wrote:
> You don't need to modify the SSH PAM module to restrict SSH connects for
> specific accounts. That has been said before in this thread -> man
> sshd_config --> AllowUsers + AllowGroups
> 

Also remember to disable SSH protocol version 1, which is inherently
insecure. Your /etc/ssh/sshd_config file probably has "Protocol 2,1" in
it somewhere. Simply change that line to say "Protocol 2".

Cheers,

-- 
Rodolfo J. Paiz <rpaiz at simpaticus.com>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20041014/209083bc/attachment-0001.sig>


More information about the fedora-list mailing list