PLEX86  x86- Virtual Machine (VM) Program
 Plex86  |  CVS  |  Mailing List  |  Download  |  Linux  |  Newsgroups

Firewall security: Problems with simple Samba file share 3580


Your Ad Here

Your Ad Here

Peter T. Breuer

Firewall security: Problems with simple Samba file share 3582
Peter T. Breuer You are presuming a use for ssh that does not exist in...

I have given examples, and so have other people. It hasn't been vague generalities at all. A firewall protects against software deficiency and accidental misconfiguration. It can also act to limit the extent of other security breaches. As someone else noted, some of us prefer to have layers of security.

Firewall security: Problems with simple Samba file share 3581
Please quote. I have seen only fuzzy generalities. Ah good! An example! Why restrict ssh? There's no point in restricting ssh. Nobody can log in through it without your...

I have a server that accepts ssh connections, but only from a specific set of IP's. Additionally, ssh is configured only to accept specific users, and additionally only allows public key authentication. Beyond that, it's configured to lock out after two incorrect pbuttwords - which of course can't be given because it doesn't accept pbuttwords. That server is also protected by a hardware firewall and iptables. Most of this is completely redundant, but that's the point: redundancy protects against error, either on my part or in the ssh daemon iteslf. If an exploit comes out for ssh that can bypbutt my configuration rules, the firewall rules that limit it to specific ip's may protect me. The iptables (which you consider pointless) is enforcing the same rules that the hardware firewall is - so if I accidentally scew up one or the other, or an exploit is discovered that can breach either one, I may still be protected by the other.

Gee, Peter, you haven't become abusive yet.. I wonder how much longer that will last. Are we actually going to have a thread that doesn't include you impugning my intelligence?

-- Tony Lawrence



Your Ad Here

List | Previous | Next

Firewall security: Problems with simple Samba file share 3581

Linux groups from Newsgroups

The #1 Usenet Provider on the Internet

Firewall security: Problems with simple Samba file share 3579