Re: SSH security

From: Seth Arnold (sarnold@wirex.com)
Date: 10/19/01


Date: Fri, 19 Oct 2001 09:36:21 -0700
From: Seth Arnold <sarnold@wirex.com>
To: Brian Clifton <brian@omegadm.co.uk>
Subject: Re: SSH security
Message-ID: <20011019093621.H930@wirex.com>

On Fri, Oct 19, 2001 at 02:57:46PM +0100, Brian Clifton wrote:
> Does anyone know how to restrict ssh login access to certain ip's??
> e.g. like host.allow does? I have found un-authorised attempts trying
> to log in via ssh in var/logs/secure...

Ah; upgrade your OpenSSH packages to 2.9.9p2, and look into using the
from= option on the keys in question. (RedHat's latest release was
numbered 2.9p2, but they may have backported the fix to 2.9p2 rather
than just using 2.9.9p2. Contact your vendor if their advisory wasn't
sufficient. :)

http://marc.theaimsgroup.com/?l=openssh-unix-dev&m=100153847110859&w=2

Cheers! :)



Relevant Pages

  • Re: Somebody is keep trying to ssh into my systems, how can I stop that?
    ... portknocking scheme without a hiccup. ... It works together with ssh to maximize the ... did not have port knocking, ... addresses and attack my port still having to break ssh security (only ...
    (comp.os.linux.security)
  • Re: SSH security
    ... Subject: SSH security ... > Does anyone know how to restrict ssh login access to certain ip's?? ...
    (Focus-Linux)
  • Re: SSH security
    ... Subject: SSH security ... > Does anyone know how to restrict ssh login access to certain ip's?? ... > # I can not use this as our ADSL ip address does not reverse map ...
    (Focus-Linux)
  • Re: SSH security
    ... Subject: SSH security ... > Does anyone know how to restrict ssh login access to certain ip's?? ... recommend tcp wrappers when it is a must situation). ... other traffic inbound for port 22 on your box. ...
    (Focus-Linux)
  • SSH security
    ... Does anyone know how to restrict ssh login access to certain ip's?? ... # I can not use this as our ADSL ip address does not reverse map ... Cuckfield House, High Street, Cuckfield, West Sussex RH17 5EL ...
    (Focus-Linux)