You are not logged in.

#1 2014-10-31 14:35:40

MultiForce
Member
Registered: 2014-03-26
Posts: 4

Secure enough way to connect to my arch box at home?

Thinking of using X2Go from work etc. since I'm already using it on my LAN at home.

Here's the plan:

Setting up SSL VPN on my SonicWall (no management etc. from VPN ofc.)
Firewall rules that only allow access to the arch box on whatever port I want from SSL VPN.
Disable password and root login on SSH and use keys instead.

Anything else I should think about?

Offline

#2 2014-10-31 14:58:35

drcouzelis
Member
From: Connecticut, USA
Registered: 2009-11-09
Posts: 4,092
Website

Re: Secure enough way to connect to my arch box at home?

I am NOT very knowledgable on the subject of security, but...

MultiForce wrote:

Disable password and root login on SSH and use keys instead.

I think this is the best way to keep your SSH server secure. At least, I hope it is, because that's what I do. tongue

I also use a non-standard port for SSH connections.

Offline

#3 2014-10-31 20:52:37

MultiForce
Member
Registered: 2014-03-26
Posts: 4

Re: Secure enough way to connect to my arch box at home?

drcouzelis wrote:

I also use a non-standard port for SSH connections.

Planning on doing that too.

Thanks for the reply.

Offline

#4 2014-10-31 20:57:31

jasonwryan
Anarchist
From: .nz
Registered: 2009-05-09
Posts: 30,424
Website

Re: Secure enough way to connect to my arch box at home?

In addition to disabling passwords and root access and changing the listening port, you can use AllowUsers to further shrink the attack surface.

Then there are tools like fail2ban that remove annoyances...


Arch + dwm   •   Mercurial repos  •   Surfraw

Registered Linux User #482438

Offline

#5 2014-10-31 21:23:36

ewaller
Administrator
From: Pasadena, CA
Registered: 2009-07-13
Posts: 19,804

Re: Secure enough way to connect to my arch box at home?

And, by all means, disable root login via ssh.  And use sshguard or fail2ban.  From my logs:

ewaller$@$odin ~ 1011 %journalctl $(which sshd)  | grep Failed     
Oct 27 17:44:20 odin sshd[24638]: Failed password for root from 192.126.120.81 port 53718 ssh2
Oct 27 17:44:22 odin sshd[24638]: Failed password for root from 192.126.120.81 port 53718 ssh2
Oct 27 17:44:23 odin sshd[24638]: Failed password for root from 192.126.120.81 port 53718 ssh2
Oct 27 17:44:25 odin sshd[24646]: Failed password for root from 192.126.120.81 port 57493 ssh2
Oct 27 17:44:27 odin sshd[24646]: Failed password for root from 192.126.120.81 port 57493 ssh2
Oct 27 22:59:52 odin sshd[22500]: Failed password for root from 117.27.158.88 port 24929 ssh2
Oct 27 22:59:56 odin sshd[22500]: Failed password for root from 117.27.158.88 port 24929 ssh2
Oct 27 23:00:03 odin sshd[22519]: Failed password for root from 117.27.158.88 port 28363 ssh2
Oct 27 23:00:10 odin sshd[22519]: Failed password for root from 117.27.158.88 port 28363 ssh2
Oct 28 03:48:00 odin sshd[17322]: Failed password for root from 61.174.51.220 port 47531 ssh2
Oct 28 03:48:03 odin sshd[17322]: Failed password for root from 61.174.51.220 port 47531 ssh2
Oct 28 03:48:05 odin sshd[17322]: Failed password for root from 61.174.51.220 port 47531 ssh2
Oct 28 04:28:22 odin sshd[21066]: Failed password for root from 117.27.158.76 port 1710 ssh2
Oct 28 04:28:25 odin sshd[21066]: Failed password for root from 117.27.158.76 port 1710 ssh2
Oct 28 04:28:27 odin sshd[21066]: Failed password for root from 117.27.158.76 port 1710 ssh2
Oct 28 04:28:32 odin sshd[21066]: Failed password for root from 117.27.158.76 port 1710 ssh2
Oct 28 04:42:49 odin sshd[22405]: Failed password for root from 122.225.97.108 port 29120 ssh2
Oct 28 04:42:51 odin sshd[22405]: Failed password for root from 122.225.97.108 port 29120 ssh2
Oct 28 04:42:54 odin sshd[22405]: Failed password for root from 122.225.97.108 port 29120 ssh2
Oct 28 04:42:56 odin sshd[22405]: Failed password for root from 122.225.97.108 port 29120 ssh2
Oct 28 09:10:01 odin sshd[15510]: Failed password for root from 122.225.109.107 port 36026 ssh2
Oct 28 09:10:06 odin sshd[15510]: Failed password for root from 122.225.109.107 port 36026 ssh2
Oct 28 09:10:09 odin sshd[15510]: Failed password for root from 122.225.109.107 port 36026 ssh2
Oct 28 09:10:11 odin sshd[15510]: Failed password for root from 122.225.109.107 port 36026 ssh2
Oct 28 09:56:53 odin sshd[20256]: Failed password for root from 122.225.109.108 port 13116 ssh2
Oct 28 09:56:55 odin sshd[20256]: Failed password for root from 122.225.109.108 port 13116 ssh2
Oct 28 09:56:57 odin sshd[20256]: Failed password for root from 122.225.109.108 port 13116 ssh2
Oct 28 09:56:59 odin sshd[20256]: Failed password for root from 122.225.109.108 port 13116 ssh2
Oct 28 15:08:41 odin sshd[18628]: Failed password for root from 122.225.109.109 port 5366 ssh2
Oct 28 15:08:43 odin sshd[18628]: Failed password for root from 122.225.109.109 port 5366 ssh2
Oct 28 15:08:45 odin sshd[18628]: Failed password for root from 122.225.109.109 port 5366 ssh2
Oct 28 15:08:47 odin sshd[18628]: Failed password for root from 122.225.109.109 port 5366 ssh2
Oct 28 19:17:26 odin sshd[9889]: Failed password for root from 60.173.14.146 port 1708 ssh2
Oct 28 19:17:30 odin sshd[9895]: Failed password for root from 60.173.14.146 port 2798 ssh2
Oct 28 19:17:34 odin sshd[9901]: Failed password for root from 60.173.14.146 port 1974 ssh2
Oct 28 19:17:38 odin sshd[9906]: Failed password for root from 60.173.14.146 port 2875 ssh2
Oct 29 00:25:36 odin sshd[7665]: Failed password for root from 122.225.109.218 port 57115 ssh2
Oct 29 00:25:39 odin sshd[7665]: Failed password for root from 122.225.109.218 port 57115 ssh2
Oct 29 00:25:41 odin sshd[7665]: Failed password for root from 122.225.109.218 port 57115 ssh2
Oct 29 00:25:43 odin sshd[7665]: Failed password for root from 122.225.109.218 port 57115 ssh2
Oct 29 02:18:25 odin sshd[18184]: Failed password for root from 61.174.50.245 port 50653 ssh2
Oct 29 02:18:28 odin sshd[18184]: Failed password for root from 61.174.50.245 port 50653 ssh2
Oct 29 02:18:31 odin sshd[18184]: Failed password for root from 61.174.50.245 port 50653 ssh2
Oct 29 03:32:28 odin sshd[24888]: Failed password for root from 122.225.109.115 port 27247 ssh2
Oct 29 03:32:31 odin sshd[24888]: Failed password for root from 122.225.109.115 port 27247 ssh2
Oct 29 03:32:32 odin sshd[24888]: Failed password for root from 122.225.109.115 port 27247 ssh2
Oct 29 03:32:35 odin sshd[24888]: Failed password for root from 122.225.109.115 port 27247 ssh2
Oct 29 04:40:21 odin sshd[31244]: Failed password for root from 122.225.97.76 port 32944 ssh2
Oct 29 04:40:24 odin sshd[31244]: Failed password for root from 122.225.97.76 port 32944 ssh2
Oct 29 04:40:26 odin sshd[31244]: Failed password for root from 122.225.97.76 port 32944 ssh2
Oct 29 05:42:07 odin sshd[4663]: Failed password for root from 61.174.51.223 port 56952 ssh2
Oct 29 05:42:09 odin sshd[4663]: Failed password for root from 61.174.51.223 port 56952 ssh2
Oct 29 05:42:11 odin sshd[4663]: Failed password for root from 61.174.51.223 port 56952 ssh2
Oct 29 06:38:27 odin sshd[10238]: Failed password for root from 61.174.51.225 port 58776 ssh2
Oct 29 06:38:29 odin sshd[10238]: Failed password for root from 61.174.51.225 port 58776 ssh2
Oct 29 06:38:31 odin sshd[10238]: Failed password for root from 61.174.51.225 port 58776 ssh2
Oct 29 07:12:31 odin sshd[13381]: Failed password for root from 122.225.97.108 port 10848 ssh2
Oct 29 07:12:33 odin sshd[13381]: Failed password for root from 122.225.97.108 port 10848 ssh2
Oct 29 07:12:34 odin sshd[13381]: Failed password for root from 122.225.97.108 port 10848 ssh2
Oct 29 07:12:37 odin sshd[13381]: Failed password for root from 122.225.97.108 port 10848 ssh2
Oct 29 07:44:24 odin sshd[16509]: Failed password for root from 122.225.97.110 port 22155 ssh2
Oct 29 07:44:27 odin sshd[16509]: Failed password for root from 122.225.97.110 port 22155 ssh2
Oct 29 07:44:29 odin sshd[16509]: Failed password for root from 122.225.97.110 port 22155 ssh2
Oct 29 07:44:33 odin sshd[16509]: Failed password for root from 122.225.97.110 port 22155 ssh2
Oct 29 09:16:38 odin sshd[25577]: Failed password for root from 122.225.97.81 port 32702 ssh2
Oct 29 09:16:40 odin sshd[25577]: Failed password for root from 122.225.97.81 port 32702 ssh2
Oct 29 09:16:42 odin sshd[25577]: Failed password for root from 122.225.97.81 port 32702 ssh2
Oct 29 11:06:45 odin sshd[4142]: Failed password for root from 122.225.97.98 port 1779 ssh2
Oct 29 11:06:48 odin sshd[4142]: Failed password for root from 122.225.97.98 port 1779 ssh2
Oct 29 11:06:49 odin sshd[4147]: Failed password for root from 122.225.97.98 port 4354 ssh2
Oct 29 11:06:50 odin sshd[4142]: Failed password for root from 122.225.97.98 port 1779 ssh2
Oct 29 11:06:51 odin sshd[4147]: Failed password for root from 122.225.97.98 port 4354 ssh2
Oct 29 11:59:52 odin sshd[9429]: Failed password for root from 122.225.97.80 port 10064 ssh2
Oct 29 11:59:54 odin sshd[9429]: Failed password for root from 122.225.97.80 port 10064 ssh2
Oct 29 11:59:56 odin sshd[9429]: Failed password for root from 122.225.97.80 port 10064 ssh2
Oct 29 12:50:18 odin sshd[14354]: Failed password for root from 61.174.50.134 port 18766 ssh2
Oct 29 12:50:20 odin sshd[14354]: Failed password for root from 61.174.50.134 port 18766 ssh2
Oct 29 12:50:22 odin sshd[14354]: Failed password for root from 61.174.50.134 port 18766 ssh2
Oct 29 15:01:11 odin sshd[26821]: Failed password for root from 122.225.109.118 port 17794 ssh2
Oct 29 15:01:13 odin sshd[26821]: Failed password for root from 122.225.109.118 port 17794 ssh2
Oct 29 15:01:15 odin sshd[26821]: Failed password for root from 122.225.109.118 port 17794 ssh2
Oct 29 15:01:17 odin sshd[26821]: Failed password for root from 122.225.109.118 port 17794 ssh2
Oct 29 15:58:25 odin sshd[32222]: Failed password for root from 122.225.97.75 port 1728 ssh2
Oct 29 15:58:28 odin sshd[32222]: Failed password for root from 122.225.97.75 port 1728 ssh2
Oct 29 15:58:30 odin sshd[32222]: Failed password for root from 122.225.97.75 port 1728 ssh2
Oct 29 15:58:33 odin sshd[32222]: Failed password for root from 122.225.97.75 port 1728 ssh2
Oct 29 18:03:53 odin sshd[12192]: Failed password for root from 218.2.0.135 port 26936 ssh2
Oct 29 18:03:56 odin sshd[12192]: Failed password for root from 218.2.0.135 port 26936 ssh2
Oct 29 18:03:58 odin sshd[12192]: Failed password for root from 218.2.0.135 port 26936 ssh2
Oct 29 18:04:00 odin sshd[12192]: Failed password for root from 218.2.0.135 port 26936 ssh2
Oct 29 19:30:14 odin sshd[20509]: Failed password for root from 61.174.51.220 port 17881 ssh2
Oct 29 19:30:17 odin sshd[20509]: Failed password for root from 61.174.51.220 port 17881 ssh2
Oct 29 19:30:19 odin sshd[20509]: Failed password for root from 61.174.51.220 port 17881 ssh2
Oct 29 20:36:07 odin sshd[26878]: Failed password for root from 122.225.97.123 port 45743 ssh2
Oct 29 20:36:09 odin sshd[26878]: Failed password for root from 122.225.97.123 port 45743 ssh2
Oct 29 20:36:12 odin sshd[26878]: Failed password for root from 122.225.97.123 port 45743 ssh2
Oct 29 20:36:14 odin sshd[26878]: Failed password for root from 122.225.97.123 port 45743 ssh2
Oct 29 22:06:49 odin sshd[3628]: Failed password for root from 122.225.97.87 port 38106 ssh2
Oct 29 22:06:52 odin sshd[3628]: Failed password for root from 122.225.97.87 port 38106 ssh2
Oct 29 22:06:54 odin sshd[3628]: Failed password for root from 122.225.97.87 port 38106 ssh2
Oct 29 22:16:14 odin sshd[4634]: Failed password for root from 122.225.97.121 port 1756 ssh2
Oct 29 22:16:16 odin sshd[4634]: Failed password for root from 122.225.97.121 port 1756 ssh2
Oct 29 22:16:18 odin sshd[4634]: Failed password for root from 122.225.97.121 port 1756 ssh2
Oct 29 22:16:21 odin sshd[4634]: Failed password for root from 122.225.97.121 port 1756 ssh2
Oct 30 06:55:20 odin sshd[19478]: Failed password for root from 117.27.158.78 port 35765 ssh2
Oct 30 06:55:24 odin sshd[19478]: Failed password for root from 117.27.158.78 port 35765 ssh2
Oct 30 06:55:26 odin sshd[19478]: Failed password for root from 117.27.158.78 port 35765 ssh2
Oct 30 06:55:32 odin sshd[19478]: Failed password for root from 117.27.158.78 port 35765 ssh2
Oct 30 08:56:41 odin sshd[31690]: Failed password for root from 122.225.97.90 port 38257 ssh2
Oct 30 08:56:45 odin sshd[31690]: Failed password for root from 122.225.97.90 port 38257 ssh2
Oct 30 08:56:47 odin sshd[31706]: Failed password for root from 122.225.97.90 port 39154 ssh2
Oct 30 08:56:50 odin sshd[31690]: Failed password for root from 122.225.97.90 port 38257 ssh2
Oct 30 08:56:52 odin sshd[31706]: Failed password for root from 122.225.97.90 port 39154 ssh2
Oct 30 09:00:20 odin sshd[31967]: Failed password for root from 122.225.97.79 port 30847 ssh2
Oct 30 09:00:22 odin sshd[31967]: Failed password for root from 122.225.97.79 port 30847 ssh2
Oct 30 09:00:24 odin sshd[31967]: Failed password for root from 122.225.97.79 port 30847 ssh2
Oct 30 09:00:27 odin sshd[31967]: Failed password for root from 122.225.97.79 port 30847 ssh2
Oct 30 10:10:58 odin sshd[6772]: Failed password for root from 122.225.97.67 port 35727 ssh2
Oct 30 10:11:01 odin sshd[6772]: Failed password for root from 122.225.97.67 port 35727 ssh2
Oct 30 10:11:03 odin sshd[6772]: Failed password for root from 122.225.97.67 port 35727 ssh2
Oct 30 10:11:05 odin sshd[6772]: Failed password for root from 122.225.97.67 port 35727 ssh2
Oct 30 14:09:54 odin sshd[29906]: Failed password for root from 122.225.109.201 port 1620 ssh2
Oct 30 14:09:59 odin sshd[29906]: Failed password for root from 122.225.109.201 port 1620 ssh2
Oct 30 14:10:02 odin sshd[29906]: Failed password for root from 122.225.109.201 port 1620 ssh2
Oct 30 14:10:05 odin sshd[29906]: Failed password for root from 122.225.109.201 port 1620 ssh2
Oct 30 14:34:51 odin sshd[32342]: Failed password for root from 122.225.109.197 port 44028 ssh2
Oct 30 14:34:53 odin sshd[32342]: Failed password for root from 122.225.109.197 port 44028 ssh2
Oct 30 14:34:55 odin sshd[32342]: Failed password for root from 122.225.109.197 port 44028 ssh2
Oct 30 14:34:57 odin sshd[32342]: Failed password for root from 122.225.109.197 port 44028 ssh2
Oct 30 15:09:28 odin sshd[3416]: Failed password for root from 122.225.97.124 port 21732 ssh2
Oct 30 15:09:30 odin sshd[3416]: Failed password for root from 122.225.97.124 port 21732 ssh2
Oct 30 15:09:33 odin sshd[3416]: Failed password for root from 122.225.97.124 port 21732 ssh2
Oct 30 15:09:35 odin sshd[3416]: Failed password for root from 122.225.97.124 port 21732 ssh2
Oct 30 15:25:22 odin sshd[4976]: Failed password for invalid user admin from 165.225.138.52 port 61605 ssh2
Oct 30 15:25:25 odin sshd[4980]: Failed password for root from 165.225.138.52 port 61639 ssh2
Oct 30 15:25:27 odin sshd[4985]: Failed password for invalid user guest from 165.225.138.52 port 61666 ssh2
Oct 30 17:42:06 odin sshd[18424]: Failed password for root from 122.225.109.204 port 33666 ssh2
Oct 30 17:42:08 odin sshd[18424]: Failed password for root from 122.225.109.204 port 33666 ssh2
Oct 30 17:42:11 odin sshd[18424]: Failed password for root from 122.225.109.204 port 33666 ssh2
Oct 30 17:42:13 odin sshd[18424]: Failed password for root from 122.225.109.204 port 33666 ssh2
Oct 30 18:19:17 odin sshd[21935]: Failed password for root from 111.74.238.101 port 4127 ssh2
Oct 30 18:19:19 odin sshd[21935]: Failed password for root from 111.74.238.101 port 4127 ssh2
Oct 30 18:19:22 odin sshd[21935]: Failed password for root from 111.74.238.101 port 4127 ssh2
Oct 30 18:19:24 odin sshd[21935]: Failed password for root from 111.74.238.101 port 4127 ssh2
Oct 30 18:31:40 odin sshd[23252]: Failed password for root from 111.74.238.101 port 1291 ssh2
Oct 30 18:31:42 odin sshd[23252]: Failed password for root from 111.74.238.101 port 1291 ssh2
Oct 30 18:31:44 odin sshd[23252]: Failed password for root from 111.74.238.101 port 1291 ssh2
Oct 30 18:31:46 odin sshd[23252]: Failed password for root from 111.74.238.101 port 1291 ssh2
Oct 30 18:49:38 odin sshd[24891]: Failed password for root from 111.74.238.101 port 4267 ssh2
Oct 30 18:49:41 odin sshd[24891]: Failed password for root from 111.74.238.101 port 4267 ssh2
Oct 30 18:49:43 odin sshd[24891]: Failed password for root from 111.74.238.101 port 4267 ssh2
Oct 30 18:49:45 odin sshd[24891]: Failed password for root from 111.74.238.101 port 4267 ssh2
Oct 30 19:16:03 odin sshd[27313]: Failed password for root from 117.27.158.76 port 1239 ssh2
Oct 30 19:16:05 odin sshd[27313]: Failed password for root from 117.27.158.76 port 1239 ssh2
Oct 30 19:16:09 odin sshd[27313]: Failed password for root from 117.27.158.76 port 1239 ssh2
Oct 30 19:16:11 odin sshd[27313]: Failed password for root from 117.27.158.76 port 1239 ssh2
Oct 30 20:39:15 odin sshd[3112]: Failed password for root from 218.2.0.125 port 11370 ssh2
Oct 30 20:39:17 odin sshd[3112]: Failed password for root from 218.2.0.125 port 11370 ssh2
Oct 30 20:39:21 odin sshd[3112]: Failed password for root from 218.2.0.125 port 11370 ssh2
Oct 30 20:39:24 odin sshd[3112]: Failed password for root from 218.2.0.125 port 11370 ssh2
Oct 30 22:49:21 odin sshd[16155]: Failed password for root from 122.225.97.113 port 49927 ssh2
Oct 30 22:49:23 odin sshd[16155]: Failed password for root from 122.225.97.113 port 49927 ssh2
Oct 30 22:49:25 odin sshd[16155]: Failed password for root from 122.225.97.113 port 49927 ssh2
Oct 30 22:49:28 odin sshd[16155]: Failed password for root from 122.225.97.113 port 49927 ssh2
Oct 31 00:41:04 odin sshd[26439]: Failed password for root from 61.174.51.214 port 27968 ssh2
Oct 31 00:41:06 odin sshd[26439]: Failed password for root from 61.174.51.214 port 27968 ssh2
Oct 31 00:41:08 odin sshd[26439]: Failed password for root from 61.174.51.214 port 27968 ssh2
Oct 31 01:19:34 odin sshd[30051]: Failed password for root from 122.225.97.121 port 47292 ssh2
Oct 31 01:19:36 odin sshd[30051]: Failed password for root from 122.225.97.121 port 47292 ssh2
Oct 31 01:19:38 odin sshd[30051]: Failed password for root from 122.225.97.121 port 47292 ssh2
Oct 31 01:19:40 odin sshd[30051]: Failed password for root from 122.225.97.121 port 47292 ssh2
Oct 31 01:25:09 odin sshd[30553]: Failed password for root from 122.225.109.107 port 42883 ssh2
Oct 31 01:25:11 odin sshd[30553]: Failed password for root from 122.225.109.107 port 42883 ssh2
Oct 31 01:25:13 odin sshd[30553]: Failed password for root from 122.225.109.107 port 42883 ssh2
Oct 31 01:25:15 odin sshd[30553]: Failed password for root from 122.225.109.107 port 42883 ssh2
Oct 31 05:03:37 odin sshd[18696]: Failed password for root from 61.174.51.223 port 6960 ssh2
Oct 31 05:03:40 odin sshd[18696]: Failed password for root from 61.174.51.223 port 6960 ssh2
Oct 31 05:03:42 odin sshd[18696]: Failed password for root from 61.174.51.223 port 6960 ssh2
Oct 31 06:44:21 odin sshd[28056]: Failed password for root from 122.225.97.104 port 43895 ssh2
Oct 31 06:44:24 odin sshd[28056]: Failed password for root from 122.225.97.104 port 43895 ssh2
Oct 31 06:44:28 odin sshd[28056]: Failed password for root from 122.225.97.104 port 43895 ssh2
Oct 31 10:25:04 odin sshd[16170]: Failed password for root from 122.225.97.123 port 24854 ssh2
Oct 31 10:25:06 odin sshd[16170]: Failed password for root from 122.225.97.123 port 24854 ssh2
Oct 31 10:25:09 odin sshd[16170]: Failed password for root from 122.225.97.123 port 24854 ssh2
Oct 31 10:25:11 odin sshd[16170]: Failed password for root from 122.225.97.123 port 24854 ssh2
Oct 31 10:50:31 odin sshd[18511]: Failed password for root from 218.2.0.135 port 44237 ssh2
Oct 31 10:50:33 odin sshd[18511]: Failed password for root from 218.2.0.135 port 44237 ssh2
Oct 31 10:50:36 odin sshd[18511]: Failed password for root from 218.2.0.135 port 44237 ssh2
Oct 31 10:50:37 odin sshd[18511]: Failed password for root from 218.2.0.135 port 44237 ssh2
Oct 31 12:06:35 odin sshd[25516]: Failed password for root from 122.225.97.74 port 50956 ssh2
Oct 31 12:06:37 odin sshd[25516]: Failed password for root from 122.225.97.74 port 50956 ssh2
Oct 31 12:06:38 odin sshd[25516]: Failed password for root from 122.225.97.74 port 50956 ssh2
Oct 31 12:06:41 odin sshd[25516]: Failed password for root from 122.225.97.74 port 50956 ssh2
ewaller$@$odin ~ 1012 %

That is what, 50 attacks in four days?  Against a home network?  I use sshguard, so the attacks are limited to four attempts.  I have seen a single attack that is not actively killed by an active defense go on for an hour with thousands of attempts.


Nothing is too wonderful to be true, if it be consistent with the laws of nature -- Michael Faraday
Sometimes it is the people no one can imagine anything of who do the things no one can imagine. -- Alan Turing
---
How to Ask Questions the Smart Way

Offline

#6 2014-10-31 21:39:10

graysky
Wiki Maintainer
From: :wq
Registered: 2008-12-01
Posts: 10,600
Website

Re: Secure enough way to connect to my arch box at home?

@ewaller - Is your sshd on port 22?  I am assuming the port in log you posted is from an attack, not the port on which you're running.


CPU-optimized Linux-ck packages @ Repo-ck  • AUR packagesZsh and other configs

Offline

#7 2014-10-31 22:20:23

MultiForce
Member
Registered: 2014-03-26
Posts: 4

Re: Secure enough way to connect to my arch box at home?

ewaller wrote:

And, by all means, disable root login via ssh.  And use sshguard or fail2ban.

Will check that out. Hopefully I will only see failed attempts to connect the VPN on the SonicWall, and never even get to that part.

Offline

#8 2014-10-31 22:28:07

ewaller
Administrator
From: Pasadena, CA
Registered: 2009-07-13
Posts: 19,804

Re: Secure enough way to connect to my arch box at home?

Yes, I am on port 22.  I almost always use ssh keys when I connect remotely, but for a couple reasons I allow password logins.  Root is not allowed, but I will happily sting them along smile  I have sshguard block addresses at the IPtables firewall from which there are more than four attempts at a high enough rate.  My router firewall blocks everything but ports 80,22 and 25.


Nothing is too wonderful to be true, if it be consistent with the laws of nature -- Michael Faraday
Sometimes it is the people no one can imagine anything of who do the things no one can imagine. -- Alan Turing
---
How to Ask Questions the Smart Way

Offline

Board footer

Powered by FluxBB