Re: Format of host keys in ~/.ssh/known_hosts
- From: Dag-Erling Smørgrav <des@xxxxxx>
- Date: Tue, 09 Feb 2010 22:38:18 +0100
Fred Mobach <fred@xxxxxxxxx> writes:
Dag-Erling Smørgrav <des@xxxxxx> writes:
There are plenty of other solutions; the simplest is to move sshd toWhy do I not trust security by obscurity ? I'm afraid that nmap will
a different port, e.g. 443.
show the banners of sshd on any port.
If the problem you're trying to solve is "logs filling up with failed
brute-force attempts", moving sshd to port 443 is a cheap and easy
solution.
Oh, and don't sneer at "security by obscurity". Sure, you wouldn't hide
the vault key under the door mat: you'd design the vault so it takes two
separate keys to open it, and give them to two separate persons. But
you wouldn't put up a poster on the vault door with their names and
photos, either.
Hyperbole aside: in this case, it so happens that obscurity can stop
99.9% of all attacks before they reach your *real* defenses and consume
*real* resources. Isn't that worth anything to you?
DES
--
Dag-Erling Smørgrav - des@xxxxxx
.
- Follow-Ups:
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Fred Mobach
- Re: Format of host keys in ~/.ssh/known_hosts
- References:
- Format of host keys in ~/.ssh/known_hosts
- From: rj
- Re: Format of host keys in ~/.ssh/known_hosts
- From: unruh
- Re: Format of host keys in ~/.ssh/known_hosts
- From: unruh
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Russell Hoover
- Re: Format of host keys in ~/.ssh/known_hosts
- From: unruh
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Ignoramus3837
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Ivan Shmakov
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Ignoramus30280
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Ivan Shmakov
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Fred Mobach
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Dag-Erling Smørgrav
- Re: Format of host keys in ~/.ssh/known_hosts
- From: Fred Mobach
- Format of host keys in ~/.ssh/known_hosts
- Prev by Date: Re: Format of host keys in ~/.ssh/known_hosts
- Next by Date: Re: Format of host keys in ~/.ssh/known_hosts
- Previous by thread: Re: Format of host keys in ~/.ssh/known_hosts
- Next by thread: Re: Format of host keys in ~/.ssh/known_hosts
- Index(es):
Relevant Pages
|