Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 22 Aug 2008 10:04:08 +1000
From:      Norberto Meijome <freebsd@meijome.net>
To:        freebsd-stable@freebsd.org
Subject:   Re: machine hangs on occasion - correlated with ssh break-in attempts
Message-ID:  <20080822100408.4bee3751@ayiin>
In-Reply-To: <48ADCFD5.8020902@aldan.algebra.com>
References:  <48ADA81E.7090106@aldan.algebra.com> <20080821200309.GA19634@eos.sc1.parodius.com> <48ADCFD5.8020902@aldan.algebra.com>

index | next in thread | previous in thread | raw e-mail

On Thu, 21 Aug 2008 16:28:05 -0400
Mikhail Teterin <mi+mill@aldan.algebra.com> wrote:

> Myself -- and the owner of the box -- travel quite a bit, ssh-ing "home" 
> from anywhere in the world. 

why not setup a SSL-based vpn ? lock everything down except the port of the vpn. try openvpn.

> Although we could, I suppose, find out the 
> destination-country's IP-allocation and add it before leaving, that 
> would be quite tedious to manage...

geoip attached to pf rules :P has anyone done it? But I can tell you it isn't that reliable...you want to have a way to bypass it.

b

_________________________
{Beto|Norberto|Numard} Meijome

"Why do you sit there looking like an envelope without any address on it?"
  Mark Twain

I speak for myself, not my employer. Contents may be hot. Slippery when wet. Reading disclaimers makes you go blind. Writing them is worse. You have been Warned.


home | help

Want to link to this message? Use this
URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20080822100408.4bee3751>