SSH brute force China and Linux: best practices

Chuck Anderson cra at WPI.EDU
Sat Jan 30 11:16:03 CST 2010


On Fri, Jan 29, 2010 at 10:47:57PM -0600, Bobby Mac wrote:
> What are the new set of best practices for those running a NIX home
> computer.  Yes I have a firewall and I do peruse my logs on a regular
> basis.

1. Don't have services listening unless you need them.

2. If you can, move needed services to nonstandard ports.

If the only ports you have open are for services you want/need to 
access from anywhere, then you don't need a firewall.

> BTW: ever drop a malformed  URL to alert an admin to some thing that sucks?
> w3.hp.com/execs/makes/too/much/money or
> www.yourbuddiesdomain.com/it/is/all/rfc/space/use/1918/when/referring/to/non/routable

Yes.




More information about the NANOG mailing list