[j-nsp] sshd log messages !!

Phil Shafer phil at juniper.net
Thu Feb 27 08:15:28 EST 2014


Ben Dale writes:
>set system services ssh port <1024-65535>
>...
>maybe an "allow-sources" might be a bit more useful in this instance?  Less sophisticate
>d users tend to shoot themselves in the foot with firewall filters quite regularly.

Would a firewall filter on lo0 be a better answer for this?
Dropping packets in hardware prevents intruders having any
impact on the RE.

Thanks,
 Phil



More information about the juniper-nsp mailing list