how to react on ssh attacks?

Ingemar Nilsson init at pdc.kth.se
Wed Oct 26 10:19:24 UTC 2005


"Knute Johnson" <knute at frazmtn.com> writes:

> Anybody know where to find detailed instructions to set up login by 
> key only?  Needs to be for a Linux blivet.

One thing I would like to know is if it is possible to disable password
logins on a user by user basis. Then you would allow passwords systemwide,
but disable them in your remote .ssh/ssh_config file. This is so that I can
use passwords for a short time after I get an account (while setting up at
least one key pair) and disable them for my account later. I may not be
able to log into every machine locally (to read mail and install the public
key), using ssh might be the only way to reach co-located servers. Even
local servers could be unreasonable to log into if they are using a
headless setup.

Regards
Ingemar




More information about the fedora-list mailing list