Security Basics mailing list archives

Re: Cisco PIX with SSH enabled on external port for maintenance


From: John Maher <john.e.maher () gmail com>
Date: Thu, 10 Nov 2005 13:23:37 -0500

There are a lot of ssh brute force attempts occurring these days.  If
you open ssh, then I suggest using (if practical) public key access only
(i.e., disable password authentication).

John

Cam Fischer wrote:

I am looking for some reasons why I should not be allowing SSH on the
external side of my Cisco PIX firewall. It would be great for
management, but what are the risks associated with this?

Thx

Cam
 



Current thread: