[lug] Hacked SSH Daemon

Sean Reifschneider jafo at tummy.com
Sat Sep 8 13:43:20 MDT 2007


On Sat, Sep 08, 2007 at 01:08:44PM -0600, George Sexton wrote:
>6) Daemons and systems that have remote access components should have 

7) Webmin has no business being world-accessible and should be protected at
the least behind an HTTP basic auth and probably by firewall rules only
allowing localhost access access+SSH tunneling or via a VPN.

Sean
-- 
 You know you're in Canada when:  The petrol-station attendant describes
 -30 degrees C as "she's a bit nippy out there, eh?".
Sean Reifschneider, Member of Technical Staff <jafo at tummy.com>
tummy.com, ltd. - Linux Consulting since 1995: Ask me about High Availability




More information about the LUG mailing list