SSH security
Dec. 21st, 2002 10:57 amToday I reset the security on all my UNIX and Cygwin SSH systems.
I logged into each and every one of them and commented out the authorized keys. I then re-added in each one, one at a time, making sure I put a reasonable comment in and, for machines that are at fixed IP addresses, I added the 'from="a.b.c.d"' qualifier.
I don't know why I did this. It wasn't paranoia. It was procrastination.
I found a couple old keys that were in some of the systems were no longer in use. It was good to clean house.
I logged into each and every one of them and commented out the authorized keys. I then re-added in each one, one at a time, making sure I put a reasonable comment in and, for machines that are at fixed IP addresses, I added the 'from="a.b.c.d"' qualifier.
I don't know why I did this. It wasn't paranoia. It was procrastination.
I found a couple old keys that were in some of the systems were no longer in use. It was good to clean house.