[j-nsp] sshd log messages !!

Yucong Sun sunyucong at gmail.com
Thu Feb 27 00:04:51 EST 2014


disable root-login will render most of attack useless.

On Wed, Feb 26, 2014 at 8:56 PM, Phil Shafer <phil at juniper.net> wrote:
> Rodrigo Augusto writes:
>>Protect your RE. Put a filter on your loopback and permit only your netwoks to access th
>>is port(22).
>
> Also consider disabling passwords completely.  In 13.3 we introduced
> the [system services ssh no-passwords] flag that turns off password-
> based authentication, requiring ssh keys instead.  This means
> password guessing brute force attacks are prevented.
>
> Of course, if you lose your key file, you're as out of luck as you'd
> be if you forgot your password.
>
> Thanks,
>  Phil
>
> _______________________________________________
> juniper-nsp mailing list juniper-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/juniper-nsp


More information about the juniper-nsp mailing list