Mailing List Archive
tlug.jp Mailing List tlug archive tlug Mailing List Archive
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]Re: [tlug] attack via ssh? (don't panic :-P)
- Date: Wed, 18 May 2005 18:26:22 +0900
- From: "Stephen J. Turnbull" <stephen@example.com>
- Subject: Re: [tlug] attack via ssh? (don't panic :-P)
- References: <87is1nl9ta.fsf@example.com><20050513234003.31cb0b09@example.com><87oebejt2f.fsf@example.com><87br7b92x0.fsf@example.com> <42897268.6080201@example.com><87zmuu44lz.fsf@example.com><20050518081850.GA2819@example.com>
- Organization: The XEmacs Project
- User-agent: Gnus/5.1006 (Gnus v5.10.6) XEmacs/21.5 (cilantro, linux)
>>>>> "David" == David Santinoli <marauder@example.com> writes: David> On Tue, May 17, 2005 at 05:51:52PM +0900, Stephen David> J. Turnbull wrote: mudrii> For securety over SSh try Port Knocking >> "Security through obscurity." It will help with port scanners >> and David> IMHO that's not "security through obscurity", as security David> here totally depends on the key (sequence of knocks) and David> not on the secrecy of the protection scheme itself. No, it depends on the secrecy of the protection scheme. It's a cleartext password being sent over the Internet, OK? You're also vulnerable to a trivial DoS attack, which can shut off your own access to the port knock enabled box. Left as an exercise for the reader. (Hint, depending on the quality of implemention of knockd, may also be most powerful with access to traffic.) -- School of Systems and Information Engineering http://turnbull.sk.tsukuba.ac.jp University of Tsukuba Tennodai 1-1-1 Tsukuba 305-8573 JAPAN Ask not how you can "do" free software business; ask what your business can "do for" free software.
- Follow-Ups:
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: David Santinoli
- References:
- [tlug] attack via ssh? (don't panic :-P)
- From: Stephen J. Turnbull
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: Michael Reinsch
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: Stephen J. Turnbull
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: Stephen J. Turnbull
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: mudrii
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: Stephen J. Turnbull
- Re: [tlug] attack via ssh? (don't panic :-P)
- From: David Santinoli
Home | Main Index | Thread Index
- Prev by Date: RE: [tlug-digest] Re: [tlug] Job Hunting
- Next by Date: Re: [tlug-digest] Re: [tlug] Job Hunting [Chris, cover yourhardware]
- Previous by thread: Re: [tlug] attack via ssh? (don't panic :-P)
- Next by thread: Re: [tlug] attack via ssh? (don't panic :-P)
- Index(es):
Home Page Mailing List Linux and Japan TLUG Members Links