disable root-login will render most of attack useless.
On Wed, Feb 26, 2014 at 8:56 PM, Phil Shafer <[email protected]> wrote: > Rodrigo Augusto writes: >>Protect your RE. Put a filter on your loopback and permit only your netwoks >>to access th >>is port(22). > > Also consider disabling passwords completely. In 13.3 we introduced > the [system services ssh no-passwords] flag that turns off password- > based authentication, requiring ssh keys instead. This means > password guessing brute force attacks are prevented. > > Of course, if you lose your key file, you're as out of luck as you'd > be if you forgot your password. > > Thanks, > Phil > > _______________________________________________ > juniper-nsp mailing list [email protected] > https://puck.nether.net/mailman/listinfo/juniper-nsp _______________________________________________ juniper-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/juniper-nsp

