disable root-login will render most of attack useless.

On Wed, Feb 26, 2014 at 8:56 PM, Phil Shafer <[email protected]> wrote:
> Rodrigo Augusto writes:
>>Protect your RE. Put a filter on your loopback and permit only your netwoks 
>>to access th
>>is port(22).
>
> Also consider disabling passwords completely.  In 13.3 we introduced
> the [system services ssh no-passwords] flag that turns off password-
> based authentication, requiring ssh keys instead.  This means
> password guessing brute force attacks are prevented.
>
> Of course, if you lose your key file, you're as out of luck as you'd
> be if you forgot your password.
>
> Thanks,
>  Phil
>
> _______________________________________________
> juniper-nsp mailing list [email protected]
> https://puck.nether.net/mailman/listinfo/juniper-nsp
_______________________________________________
juniper-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/juniper-nsp

Reply via email to