Yes agree some of the arguments are a bit silly.
I think in any case one should disable ssh password authentication. If afraid of locking oneself out and not on a VPS with a console one can selectively enable <http://security.stackexchange.com/questions/18036/creating-user-specific-authentication-methods-in-ssh> password login for users that you trust will use a long and secure password. This sort of removes the ssh brute-force problem.
_______________________________________________ Mailing list: https://launchpad.net/~dhis2-devs Post to : dhis2-devs@lists.launchpad.net Unsubscribe : https://launchpad.net/~dhis2-devs More help : https://help.launchpad.net/ListHelp