Cov txheej txheem:

Koj harden OpenSSH li cas?
Koj harden OpenSSH li cas?

Video: Koj harden OpenSSH li cas?

Video: Koj harden OpenSSH li cas?
Video: Stepback? shooting drills 2024, Plaub Hlis Ntuj
Anonim
  1. Teem lub sijhawm tsis ua haujlwm ntawm lub sijhawm. Lub sij hawm tsis ua hauj lwm ncua sij hawm yog lub sij hawm uas ib qho ssh kev sib ntsib raug tso cai zaum tsis ua haujlwm.
  2. Tshem tawm cov passwords khoob. Muaj qee qhov system neeg siv nyiaj uas tsim tsis muaj passwords.
  3. Disable X11 forwarding.
  4. Txwv max authentication sim.
  5. Disable SSH ntawm desktops.

Tsis tas li ntawd, kuv yuav ua li cas nyuaj SSH hauv Ubuntu?

Ruaj ntseg SSH server ntawm Ubuntu

  1. Hloov lub neej ntawd SSH chaw nres nkoj.
  2. Siv SSH2.
  3. Siv daim ntawv teev npe dawb thiab daim ntawv teev npe dub kom txwv cov neeg siv nkag.
  4. Disable hauv paus nkag.
  5. Nkaum tus ID nkag mus kawg.
  6. Txwv tsis pub SSH nkag mus rau cov chaw nyob IP tshwj xeeb.
  7. Disable lo lus zais authentication.
  8. Disable.rhosts.

Kuj Paub, Kuv yuav siv OpenSSH li cas? Rau Ubuntu / Debian:

  1. Kauj ruam 1: Txhawm rau nruab OpenSSH ntawm tus neeg siv khoom thiab sab server. Ntaus cov lus txib hauv qab no hauv lub davhlau ya nyob twg thiab tos kom txog thaum cov pob khoom raug rub tawm thiab nruab.
  2. Kauj Ruam 2: Xyuas seb qhov kev pabcuam puas ua haujlwm.
  3. Kauj ruam 3: Configuration.
  4. Kauj ruam 4: Txuas rau OpenSSH.

Ib yam li ntawd, OpenSSH ruaj ntseg li cas?

OpenSSH yog tus qauv rau ruaj ntseg Kev nkag mus rau tej thaj chaw deb rau * Unix-zoo li servers, hloov lub unencrypted telnet raws tu qauv. SSH (thiab nws cov ntaub ntawv hloov chaw sub-protocol SCP) xyuas kom meej tias kev sib txuas los ntawm koj lub khoos phis tawj hauv zos mus rau lub server tau encrypted thiab ruaj ntseg.

Puas yog qhov chaw nres nkoj 22 ruaj ntseg?

SSH feem ntau yog siv los nkag rau hauv lub tshuab tej thaj chaw deb thiab ua tiav cov lus txib, tab sis nws kuj tseem txhawb nqa tunneling, xa mus rau TCP chaw nres nkoj thiab X11 kev sib txuas; nws tuaj yeem hloov cov ntaub ntawv siv SSH cov ntaub ntawv sib txuas (SFTP) lossis ruaj ntseg luam (SCP) raws tu qauv. Standard TCP port 22 tau raug xa mus hu rau SSH servers.

Pom zoo: