1. Advertising
    y u no do it?

    Advertising (learn more)

    Advertise virtually anything here, with CPM banner ads, CPM email ads and CPC contextual links. You can target relevant areas of the site and show ads based on geographical location of the user if you wish.

    Starts at just $1 per CPM or $0.10 per CPC.

ssh + APF login issues

Discussion in 'Security' started by charlinks, Apr 19, 2007.

  1. #1
    Ok... I'm a dumbass...

    I configured ssh to be on a different port to filter out the average-joe-hacker-wanna-be.

    Then I isntalled APF to get some more solid firewalling...

    and then... I was dumb enough to reboot. so now I can no longer do SSH... :(

    Now the question is since I have root username/pass and am able to login to WHM... is it possible to do something about it?

    Can I somehow change a config file from WHM?

    tried doing ftp with my root but it seems it's not enabled by default...


    Thanks much!
     
    charlinks, Apr 19, 2007 IP
  2. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #2
    1- you are not securing your ssh,it takes 50 seconds to find the port.
    2-you can request hard reboot from DC
    3-Google >> "port knocking" for secure ssh ;) (you can find detailed how to at gentoo-wiki or gentoo forums)
    4-Changing config is not important you have to restart the service.
    5-You can't do anything with ftp
     
    rootbinbash, Apr 19, 2007 IP
  3. charlinks

    charlinks Guest

    Messages:
    125
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #3

    1- I didn't say I was securing it I said I was reducing the number of average joes trying to break in.

    2- I can reboot the machine from WHM, that's not the issue. Hard reboot is not going to change the config.

    3- Yeah I know about port knocking that was my next step.

    4- Yes changing config is important :) Unless you mean I have to STOP the service? :)

    5- I guess I've done this before with SFTP. I wouldn't want root access to my ftp anyways.

    Thanks for your reply!
     
    charlinks, Apr 19, 2007 IP
  4. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Whats the issue then?Is apf blocking ssh access? or is there something wrong with your sshd_config?

    Which config file do you want to edit?
     
    rootbinbash, Apr 19, 2007 IP
  5. charlinks

    charlinks Guest

    Messages:
    125
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #5
    You nailed it - APF is blocking my SSH access. :)

    so reboot won't do since the APF is installed in the boot sequence as well.

    Well either one that will let me either change the port.

    I have to either change sshd_config back to port 22, or add the other port to the APF config.
     
    charlinks, Apr 19, 2007 IP
  6. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #6
    Now i got it.i checked the whm panel but as i can see you can't edit sshd_config.you have to e-mail the DC about stopping apfd service.you are limited at this point.
     
    rootbinbash, Apr 19, 2007 IP