Re: openssh

Daniel Roethlisberger <[email protected]>
Newsgroups gmane.linux.lfs.security
Message-ID <[email protected]>
Rainer Peter Feller <[email protected]> wrote:
> aehm ... is there a way ... ???  o.k. I see ...  everything static ...
> much work ahead!

ahem.. what the heck is wrong with setting up netfilter to drop outgoing
ssh traffic on those ifaces? that's a matter of issueing a small number
of iptables commands. why don't you do it the easy way? (locking down
the system does make sense sometimes, but not merely to stop users from
ssh'ing through certain ifaces.

cheers
dan (puzzled, I dare say)


-- 
   Daniel Roethlisberger <[email protected]>
   OpenPGP key id 0x804A06B1 (1024/4096 DSA/ElGamal)
   144D 6A5E 0C88 E5D7 0775 FCFD 3974 0E98 804A 06B1
   >> privacy through technology, not legislation <<
-- 
Unsubscribe: send email to [email protected]
and put 'unsubscribe lfs-security' in the subject header of the message
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.