Re: status: hints on how to check your machine for intrusion

From: Maarten Lankhorst
Date: Mon Oct 03 2011 - 05:29:11 EST

On 10/01/2011 11:30 PM, Henrique de Moraes Holschuh wrote:
> Hmm, and a last tip:
> Always use the "AllowUsers" or "AllowGroups" directive in sshd_config to
> only allow access to whitelisted users/groups and deny to every other user
> (including system ones).
Also nice is a dumb iptables filter with the recent match. 2 lines total.

But denyhosts does blacklisting for sshd automatically. :)

