Re: block_ssh_guessers



In article <1551761.ZgHNHj5mP8@xxxxxxx>,
matt_left_coast <not@xxxxxxxxxx> wrote:

Lawrence D'Oliveiro wrote:

In article <oJ92g.4243$mu2.1615@xxxxxxxxxxxxxxxxxxxxxxxxxx>,
Bill Davidsen <davidsen@xxxxxxx> wrote:

Lawrence D'Oliveiro wrote:
In article <slrne47ssp.18i.ibuprofin@xxxxxxxxxxxxxxxxx>,
ibuprofin@xxxxxxxxxxxxxxxxxxxxxx (Moe Trin) wrote:

If you absolutely MUST allow connections from the world, and you can't
be bothered to set up certificates, google for port knocking.

port-knocking--don't be bloody stupid.

Care to share why you think port-knocking is stupid?

Ever heard of the term "replay attack"?

Ever hear of changing the sequence with each connection? As soon as the
sequence is used, it's changed, you can replay (IF that is, you were ever
able to get the sequence in the first place) all you want, the code you
sniffed is invalid.

Ever learn to think?

What happens if somebody else uses the sequence first?
.



Relevant Pages

  • Re: block_ssh_guessers
    ... port-knocking--don't be bloody stupid. ... Care to share why you think port-knocking is stupid? ... Ever heard of the term "replay attack"? ... Ever hear of changing the sequence with each connection? ...
    (comp.os.linux.security)
  • Re: block_ssh_guessers
    ... can't be bothered to set up certificates, google for port knocking. ... port-knocking--don't be bloody stupid. ... Ever hear of changing the sequence with each connection? ... then login WITH the right login or get locked out. ...
    (comp.os.linux.security)
  • RE: Beginner questions about backup/restore
    ... 821511 How to Replay Log Files That Have Been Generated Since the Last Full ... as long as the sequence is contiguous; ... Please do not send email directly to this alias. ...
    (microsoft.public.exchange2000.admin)
  • Re: how do I automate testing of Tk programs?
    ... IO - not GUI ... sequence of mouse clicks and keypresses so that I could replay the sequence to the Tk program under test. ...
    (comp.lang.tcl)
  • Re: Single Mailbox Restore, SINGLE server! Exchange 5.5 - VERY ur
    ... Assuming they are all in sequence, will they "replay" or commit ... automatically when the store mounts, or do I have to do something? ...
    (microsoft.public.exchange.admin)