attack on my server

Dave Cramer davec-zxk95TxsVYDyHADnj0MGvQC/G2K4zDHf at public.gmane.org
Mon Aug 27 20:21:06 UTC 2007


I don't stop there.

turn off root login in sshd_config.

Additionally deny remote root login using PAM forces you to use sudo.

Dave

On 27-Aug-07, at 3:59 PM, Jamon Camisso wrote:

> Ian Petersen wrote:
>> On 8/27/07, Jamon Camisso <jamon.camisso-H217xnMUJC0sA/PxXw9srA at public.gmane.org> wrote:
>>> Put these into your /etc/ssh/sshd_config
>>> PasswordAuthentication no
>>> PubkeyAuthentication yes
>> I think you have to turn off PAM-based access, too.  I had the same
>> problem as Martin and used the same solution as Jamon suggested.  I
>> thought I had configured sshd to only allow key-based logins, but
>> username/password combos were being accepted until I turn off PAM,
>> too.  I don't remember the explanation.
>> Ian
>
> Right. Add/change:
> UsePAM no
>
> Jamon
> --
> The Toronto Linux Users Group.      Meetings: http://gtalug.org/
> TLUG requests: Linux topics, No HTML, wrap text below 80 columns
> How to UNSUBSCRIBE: http://gtalug.org/wiki/Mailing_lists

--
The Toronto Linux Users Group.      Meetings: http://gtalug.org/
TLUG requests: Linux topics, No HTML, wrap text below 80 columns
How to UNSUBSCRIBE: http://gtalug.org/wiki/Mailing_lists





More information about the Legacy mailing list