<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: Lock down! SSH lock down!</title>
	<atom:link href="http://blog.dbugs.org/2007/08/29/ssh-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.dbugs.org/2007/08/29/ssh-security/</link>
	<description>where knowledge meets creation</description>
	<lastBuildDate>Thu, 13 Jan 2011 15:24:26 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: OpenSSH and Keychain for Systems Administrators &#124; Crunch Tools</title>
		<link>http://blog.dbugs.org/2007/08/29/ssh-security/comment-page-1/#comment-300</link>
		<dc:creator>OpenSSH and Keychain for Systems Administrators &#124; Crunch Tools</dc:creator>
		<pubDate>Thu, 13 Jan 2011 15:24:26 +0000</pubDate>
		<guid isPermaLink="false">http://blog.dbugs.org/2007/08/29/ssh-security/#comment-300</guid>
		<description>[...] http://blog.dbugs.org/2007/08/29/ssh-security/ [...]</description>
		<content:encoded><![CDATA[<p>[...] <a href="http://blog.dbugs.org/2007/08/29/ssh-security/" rel="nofollow">http://blog.dbugs.org/2007/08/29/ssh-security/</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: neil</title>
		<link>http://blog.dbugs.org/2007/08/29/ssh-security/comment-page-1/#comment-298</link>
		<dc:creator>neil</dc:creator>
		<pubDate>Sat, 23 Oct 2010 17:31:12 +0000</pubDate>
		<guid isPermaLink="false">http://blog.dbugs.org/2007/08/29/ssh-security/#comment-298</guid>
		<description>oh, and i needed to insert the rules rather than append because my last rule was a reject all.</description>
		<content:encoded><![CDATA[<p>oh, and i needed to insert the rules rather than append because my last rule was a reject all.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: neil</title>
		<link>http://blog.dbugs.org/2007/08/29/ssh-security/comment-page-1/#comment-297</link>
		<dc:creator>neil</dc:creator>
		<pubDate>Sat, 23 Oct 2010 17:21:36 +0000</pubDate>
		<guid isPermaLink="false">http://blog.dbugs.org/2007/08/29/ssh-security/#comment-297</guid>
		<description>much appreciated for the tutorial.

i needed to add a -j ACCEPT to the first iptables rule:
iptables -A INPUT -i ${WAN} -p tcp –dport 2222 -m state –state NEW -m recent –set –name SSH -j ACCEPT</description>
		<content:encoded><![CDATA[<p>much appreciated for the tutorial.</p>
<p>i needed to add a -j ACCEPT to the first iptables rule:<br />
iptables -A INPUT -i ${WAN} -p tcp –dport 2222 -m state –state NEW -m recent –set –name SSH -j ACCEPT</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: SneakyWho_am_i</title>
		<link>http://blog.dbugs.org/2007/08/29/ssh-security/comment-page-1/#comment-287</link>
		<dc:creator>SneakyWho_am_i</dc:creator>
		<pubDate>Sat, 30 May 2009 21:50:45 +0000</pubDate>
		<guid isPermaLink="false">http://blog.dbugs.org/2007/08/29/ssh-security/#comment-287</guid>
		<description>I love the banner. Mine just gives a list of commonly used commands since most of my clients aren&#039;t used to working through a shell of any kind, but a great message like yours is hard to look past!

Yuck, I&#039;m at work and the keyboard is _sticky_.</description>
		<content:encoded><![CDATA[<p>I love the banner. Mine just gives a list of commonly used commands since most of my clients aren&#8217;t used to working through a shell of any kind, but a great message like yours is hard to look past!</p>
<p>Yuck, I&#8217;m at work and the keyboard is _sticky_.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.377 seconds -->
<!-- Cached page served by WP-Cache -->

