On Sat, 2009-01-17 at 14:46 -0500, Roberto C. Sánchez wrote:
> Simply do this:
> 
>  - restrict login to key-based authentication
>  - make use of AllowUsers/AllowGroups in sshd_config
> 
> It makes things like fail2ban (and other port knocking schemes)
> basically unnecessary.

        Uh huh... Tried that... Key based and average Windows user hosting
websites brings lots of headaches trying to make that work.. I felt good
getting them to move from ftp to ssh :P

-- 
Homer Parker <[email protected]>
Homer's Hut


------------------------------------------------------------------------------
This SF.net email is sponsored by:
SourcForge Community
SourceForge wants to tell your story.
http://p.sf.net/sfu/sf-spreadtheword
_______________________________________________
Shorewall-users mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/shorewall-users

Reply via email to