[vox-tech] Securing SSH
Ricardo Anguiano
vox-tech@lists.lugod.org
Fri, 01 Aug 2003 12:09:55 -0700
"Daniel Hurt" <dwhurt@ucdavis.edu> writes:
> I know the title is kind of redundant, but I was curious if there is
> anything beyond these couple of steps that I have taken to secure
> ssh? [...] Is there anything else that I might consider to help
> keep the machine secure?
1) Disallow ssh protocol version 1
google: "ssh protocol version 1 insecure"
2) Disallow password authentication and use public key authentication
only.
3) Keep up with the latest ssh related advisories.
--
Ricardo Anguiano
http://www.codesourcery.com