Re: Restricting ssh

2011-01-07 Thread Donald Russell
On Thu, Jan 6, 2011 at 15:45, Sam Varshavchik wrote: > Timothy Murphy writes: > > I have an sshd server running on a machine in Ireland. >> >> Can I configure it so that it only accepts connection >> from certain machines, wherever they may be in the world? >> > > In sshd_config set: > > Passwor

Re: Restricting ssh

2011-01-07 Thread Roger K. Wells
On 01/07/2011 10:49 AM, Mike Zingale wrote: > 2011/1/7 Markus Schönhaber: >> 07.01.2011 00:28, Timothy Murphy: >> >>> I have an sshd server running on a machine in Ireland. >>> >>> Can I configure it so that it only accepts connection >>> from certain machines, wherever they may be in the world? >

Re: Restricting ssh

2011-01-07 Thread Mike Zingale
2011/1/7 Markus Schönhaber : > 07.01.2011 00:28, Timothy Murphy: > >> I have an sshd server running on a machine in Ireland. >> >> Can I configure it so that it only accepts connection >> from certain machines, wherever they may be in the world? > I uses /etc/hosts.deny and /etc/hosts.allow to do

Re: Restricting ssh

2011-01-07 Thread Markus Schönhaber
07.01.2011 00:28, Timothy Murphy: > I have an sshd server running on a machine in Ireland. > > Can I configure it so that it only accepts connection > from certain machines, wherever they may be in the world? Among other things already mentioned you could turn off all *Authentication options in

Re: Restricting ssh

2011-01-06 Thread Timothy Murphy
On Friday, January 07, 2011 12:40:24 am Pittigher, Raymond - ES wrote: >> Can I configure it [sshd] so that it only accepts connection >> from certain machines, wherever they may be in the world? > You can use iptables or you can configure sshd config How and how? -- Timothy Murphy e-mail: g

Re: Restricting ssh

2011-01-06 Thread Timothy Murphy
On Friday, January 07, 2011 12:41:39 am Frank Cox wrote: > > Can I configure it [sshd] so that it only accepts connection > > from certain machines, wherever they may be in the world? > > Set ssh to accept only keys and not passwords. Install a key on each > authorized computer. Done. Thanks

Re: Restricting ssh

2011-01-06 Thread Tom Horsley
On Fri, 07 Jan 2011 00:28:47 +0100 Timothy Murphy wrote: > Can I configure it so that it only accepts connection > from certain machines, wherever they may be in the world? I've setup iptables to drop just about everything, then I have (among others) an /etc/sysconfig/iptables entry like this: -

Re: Restricting ssh

2011-01-06 Thread Sam Varshavchik
Timothy Murphy writes: I have an sshd server running on a machine in Ireland. Can I configure it so that it only accepts connection from certain machines, wherever they may be in the world? In sshd_config set: PasswordAuthentication no Then, on the machines that you wish to allow connection

Re: Restricting ssh

2011-01-06 Thread Frank Cox
On Fri, 07 Jan 2011 00:28:47 +0100 Timothy Murphy wrote: > Can I configure it so that it only accepts connection > from certain machines, wherever they may be in the world? Set ssh to accept only keys and not passwords. Install a key on each authorized computer. Done. You can also run sshd o

RE: Restricting ssh

2011-01-06 Thread Pittigher, Raymond - ES
...@lists.fedoraproject.org [users-boun...@lists.fedoraproject.org] On Behalf Of Timothy Murphy [gayle...@eircom.net] Sent: Thursday, January 06, 2011 6:28 PM To: users@lists.fedoraproject.org Subject: Restricting ssh I have an sshd server running on a machine in Ireland. Can I configure it so

Restricting ssh

2011-01-06 Thread Timothy Murphy
I have an sshd server running on a machine in Ireland. Can I configure it so that it only accepts connection from certain machines, wherever they may be in the world? -- Timothy Murphy e-mail: gayleard /at/ eircom.net tel: +353-86-2336090, +353-1-2842366 s-mail: School of Mathematics, Trinity