Mailinglist Archive: opensuse (3336 mails)
| < Previous | Next > |
Re: [SLE] HOWTO block a host with SuSEFirewall2?
- From: Andre Truter <andre.truter@xxxxxxxxx>
- Date: Thu, 22 Dec 2005 11:35:39 +0200
- Message-id: <173f0b9f0512220135n7a95d03s8c559c781a49343c@xxxxxxxxxxxxxx>
On 12/22/05, Peter Nikolic <p.nikolic1@xxxxxxxxxxxxxx> wrote:
>
> Why not try the fix i used to stop these idiots causing problems
>
> I simply reassinged ssh to another port number that is far enough out of the
> way to make it safe since then i have had no more attacks i wont publis what
> port i am using but it is a five digit number , All of my machines now use
> that port by default ..
>
That is what I have done now, but it causes some other problems for me.
One of the sites that I work from block stuff in and out. So, when I
am on thier network (and I spend most of my time there) I can only ssh
out of thier network via port 22.
So, now, to get to my server (which is located about 20 km from there)
I have to first ssh into another server that is located on the other
side of the planet and then from there ssh back into my server via my
special port.
So, the latency is very bad.
But I suppose it is not a bad price to pay in order to avoid the
bastards from hitting my box all the time.
It just sounds a bit silly to circumvent the planet in order to log
into my box.... :-)
--
Andre Truter | Software Engineer | Registered Linux user #185282
ICQ #40935899 | AIM: trusoftzaf | http://www.trusoft.za.org
~ A dinosaur is a salamander designed to Mil Spec ~
>
> Why not try the fix i used to stop these idiots causing problems
>
> I simply reassinged ssh to another port number that is far enough out of the
> way to make it safe since then i have had no more attacks i wont publis what
> port i am using but it is a five digit number , All of my machines now use
> that port by default ..
>
That is what I have done now, but it causes some other problems for me.
One of the sites that I work from block stuff in and out. So, when I
am on thier network (and I spend most of my time there) I can only ssh
out of thier network via port 22.
So, now, to get to my server (which is located about 20 km from there)
I have to first ssh into another server that is located on the other
side of the planet and then from there ssh back into my server via my
special port.
So, the latency is very bad.
But I suppose it is not a bad price to pay in order to avoid the
bastards from hitting my box all the time.
It just sounds a bit silly to circumvent the planet in order to log
into my box.... :-)
--
Andre Truter | Software Engineer | Registered Linux user #185282
ICQ #40935899 | AIM: trusoftzaf | http://www.trusoft.za.org
~ A dinosaur is a salamander designed to Mil Spec ~
| < Previous | Next > |