[K12OSN] Help: System intrusion through ssh and a weak password

Nils Breunese nils at breun.nl
Sat May 5 10:10:03 UTC 2007


Op 5-mei-2007, om 8:53 heeft Nadav Kavalerchik het volgende geschreven:

> we're using freenx through ssh to remote control all the school  
> that are installed with ltsp
>
> what we did is moved the ssh port somewhere high in the port list,  
> it solved all the "scanning" and trying to "break in" log entries  
> that we used to see in the log file :-)
>
> (i wonder how long it will last)

I like to setup SSH keys, disable PasswordAuthentication and install  
something like Fail2Ban or DenyHosts. That should keep them out and  
keep your logs from growing like mad.

Nils Breunese.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: PGP.sig
Type: application/pgp-signature
Size: 186 bytes
Desc: Dit deel van het bericht is digitaal ondertekend
URL: <http://listman.redhat.com/archives/k12osn/attachments/20070505/68929855/attachment.sig>


More information about the K12OSN mailing list