More SSH 'trolling'

Rodolfo J. Paiz rpaiz at simpaticus.com
Thu Oct 14 16:18:13 UTC 2004


On Thu, 2004-10-14 at 17:06 +0200, Alexander Dalloz wrote:
> You don't need to modify the SSH PAM module to restrict SSH connects for
> specific accounts. That has been said before in this thread -> man
> sshd_config --> AllowUsers + AllowGroups
> 

Also remember to disable SSH protocol version 1, which is inherently
insecure. Your /etc/ssh/sshd_config file probably has "Protocol 2,1" in
it somewhere. Simply change that line to say "Protocol 2".

Cheers,

-- 
Rodolfo J. Paiz <rpaiz at simpaticus.com>
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
Url : http://lists.fedoraproject.org/pipermail/users/attachments/20041014/209083bc/attachment-0002.bin 


More information about the users mailing list