Changing SSH and Apache ports

Kenneth Porter shiva at sewingwitch.com
Thu Dec 15 01:24:56 UTC 2005


--On Wednesday, December 14, 2005 8:10 PM -0500 "Scot L. Harris" 
<webid at cfl.rr.com> wrote:

> But you are correct, at best this is security by obscurity.  And any
> determined hacker will run a full port scan and find the port anyway.

Right, all security is about cost. This slightly raises the cost for the 
attacker, putting it out of reach of trivial scripts. By reducing noise in 
one's logs, one can pay attention to more serious threats. It's a matter of 
shutting up that kid crying "wolf".

(BTW, sorry about the double post. I mis-interpreted a bounce message 
coming from the  mail server for ast at astinc.net and thought I'd somehow 
goofed up the first attempt.)




More information about the users mailing list