From owner-freebsd-questions@FreeBSD.ORG Sat Nov 29 21:11:40 2008 Return-Path: Delivered-To: freebsd-questions@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:4f8:fff6::34]) by hub.freebsd.org (Postfix) with ESMTP id E9D041065734 for ; Sat, 29 Nov 2008 21:11:40 +0000 (UTC) (envelope-from jos@webrz.net) Received: from webrz.xs4all.nl (webrz.xs4all.nl [82.95.248.216]) by mx1.freebsd.org (Postfix) with ESMTP id AE5C38FC19 for ; Sat, 29 Nov 2008 21:11:40 +0000 (UTC) (envelope-from jos@webrz.net) Received: from webrz.xs4all.nl (localhost [127.0.0.1]) by webrz.xs4all.nl (Postfix) with ESMTP id DD6ED50A4E; Sat, 29 Nov 2008 22:11:40 +0100 (CET) Received: from [10.10.10.27] (atlantis.webrz.net [10.10.10.27]) by webrz.xs4all.nl (Postfix) with ESMTP id 9937B50A4D; Sat, 29 Nov 2008 22:11:40 +0100 (CET) Message-ID: <4931B00D.2040206@webrz.net> Date: Sat, 29 Nov 2008 22:11:41 +0100 From: Jos Chrispijn User-Agent: Thunderbird 2.0.0.16 (Windows/20080708) MIME-Version: 1.0 To: Chris References: <49319A83.6050407@webrz.net> <22771067-1635-4C00-A0EB-4E14569F636C@hughes.net> In-Reply-To: <22771067-1635-4C00-A0EB-4E14569F636C@hughes.net> Content-Type: text/plain; charset=ISO-8859-1; format=flowed Content-Transfer-Encoding: 7bit X-AV-Checked: ClamAV using ClamSMTP @triton.webrz.net Cc: FreeBSD-Questions Questions Subject: Re: Temporarily blocking ports X-BeenThere: freebsd-questions@freebsd.org X-Mailman-Version: 2.1.5 Precedence: list List-Id: User questions List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Sat, 29 Nov 2008 21:11:41 -0000 From your reply on my message of 29-11-2008 21:47: > An even tighter practice is to turn off all password logins and > use only keyed connections. This is easier than it might seem > though I'll admit I think of ssh as something only a select > number of users may use and thus you know them by name > and what IPs they are permitted to connect on. I have been thinking of that as well, but don't think I should use that yet with the knowledge I have on this. Do you refer to manual of automatic key connections? thanks for sharing, Jos Chrispijn