The Channel logo

Layered Security

Anyone with a basic knowledge of security knows not to rely on a single layer of protection. Handy as DenyHosts is, it won't protect you completely. For ssh on my internet exposed linux server I:

1)run on a non-standard port

2)run DenyHosts, with blacklist sharing

3)run PortSentry on the standard ssh port (and many others)

4)Disable ssh login for all but one user that is completely unprivileged and with a non-standard user name.

That's in addition to security measures that don't relate directly to ssh protection.

Forums

Forgotten password

Opinion

euros_channel_money

Tim Worstall

Time to take a sniff at the coffee, perhaps
joe_tucci_emc_channel

Chris Mellor

Will they have to drag him back like last time?
chain_relationship_channel

Features

cloud_accounting
Playing the SLA long game
channel_teaser_money_top
cloud computing Fight
Applications must work for the cloud to float
Paul Cormier, Red Hat
How a Unix killer crawled from the dot-com bust