Re: openssh
Daniel Roethlisberger <[email protected]>
| Newsgroups | gmane.linux.lfs.security |
|---|---|
| Message-ID | <[email protected]> |
Rainer Peter Feller <[email protected]> wrote: > aehm ... is there a way ... ??? o.k. I see ... everything static ... > much work ahead! ahem.. what the heck is wrong with setting up netfilter to drop outgoing ssh traffic on those ifaces? that's a matter of issueing a small number of iptables commands. why don't you do it the easy way? (locking down the system does make sense sometimes, but not merely to stop users from ssh'ing through certain ifaces. cheers dan (puzzled, I dare say) -- Daniel Roethlisberger <[email protected]> OpenPGP key id 0x804A06B1 (1024/4096 DSA/ElGamal) 144D 6A5E 0C88 E5D7 0775 FCFD 3974 0E98 804A 06B1 >> privacy through technology, not legislation << -- Unsubscribe: send email to [email protected] and put 'unsubscribe lfs-security' in the subject header of the message