[svlug] ssh attacks - ideas

Rafael Skodlar raffi at linwin.com
Fri Oct 22 22:32:00 PDT 2004


On Fri, Oct 22, 2004 at 04:47:54PM -0700, Anthony Ettinger wrote:
> Rafael,
> 
> My point is this: Simply changing the port your server
> listens on does not make it any more secure, with
> regards to software you are running.

I never suggested or practiced using different port in the first place so
why are you pinning it on me?

> 
> 
> --- Rafael Skodlar <raffi at linwin.com> wrote:
> 
> > On Fri, Oct 22, 2004 at 03:04:31PM -0700, Anthony
> > Ettinger wrote:
> > > Security through Obscurity, I guess.
> > 
> > Sorry, but that's bad guess. Port knocking makes it
> > more difficult to
> > find a server with sshd port than changing ssh
> > config to listen to
> > another port. If you don't knock properly, the door
> > will never open to
> > port 22 or any other port for that matter.
> > 
> > > 
> > > But seriously, a port scan can do 1-10000 in a
> > minute.
> > > 
> > 
> > So what? By the time you make scan 50 I can have a
> > script firewall your
> > IP out completely.
> > 
> > -- 
> > Rafael
> > "There really can be no debate about it now: natural
> > human ability to
> > percieve number does not exceed four!"
> > --- George Ifrah, The Universal History of Numbers.
> > 
> > 
> 
> 
> =====
> Anthony Ettinger
> Phone: (408) 656-2473
> apwebdesign at yahoo.com
> Blog: http://www.chovy.com

-- 
Rafael
"There really can be no debate about it now: natural human ability to
percieve number does not exceed four!"
--- George Ifrah, The Universal History of Numbers.





More information about the svlug mailing list