ssh + APF login issues

Discussion in 'Security' started by charlinks, Apr 19, 2007.

  1. #1
    Ok... I'm a dumbass...

    I configured ssh to be on a different port to filter out the average-joe-hacker-wanna-be.

    Then I isntalled APF to get some more solid firewalling...

    and then... I was dumb enough to reboot. so now I can no longer do SSH... :(

    Now the question is since I have root username/pass and am able to login to WHM... is it possible to do something about it?

    Can I somehow change a config file from WHM?

    tried doing ftp with my root but it seems it's not enabled by default...


    Thanks much!
     
    charlinks, Apr 19, 2007 IP
  2. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #2
    1- you are not securing your ssh,it takes 50 seconds to find the port.
    2-you can request hard reboot from DC
    3-Google >> "port knocking" for secure ssh ;) (you can find detailed how to at gentoo-wiki or gentoo forums)
    4-Changing config is not important you have to restart the service.
    5-You can't do anything with ftp
     
    rootbinbash, Apr 19, 2007 IP
  3. charlinks

    charlinks Guest

    Messages:
    125
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #3

    1- I didn't say I was securing it I said I was reducing the number of average joes trying to break in.

    2- I can reboot the machine from WHM, that's not the issue. Hard reboot is not going to change the config.

    3- Yeah I know about port knocking that was my next step.

    4- Yes changing config is important :) Unless you mean I have to STOP the service? :)

    5- I guess I've done this before with SFTP. I wouldn't want root access to my ftp anyways.

    Thanks for your reply!
     
    charlinks, Apr 19, 2007 IP
  4. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #4
    Whats the issue then?Is apf blocking ssh access? or is there something wrong with your sshd_config?

    Which config file do you want to edit?
     
    rootbinbash, Apr 19, 2007 IP
  5. charlinks

    charlinks Guest

    Messages:
    125
    Likes Received:
    5
    Best Answers:
    0
    Trophy Points:
    0
    #5
    You nailed it - APF is blocking my SSH access. :)

    so reboot won't do since the APF is installed in the boot sequence as well.

    Well either one that will let me either change the port.

    I have to either change sshd_config back to port 22, or add the other port to the APF config.
     
    charlinks, Apr 19, 2007 IP
  6. rootbinbash

    rootbinbash Peon

    Messages:
    2,198
    Likes Received:
    88
    Best Answers:
    0
    Trophy Points:
    0
    #6
    Now i got it.i checked the whm panel but as i can see you can't edit sshd_config.you have to e-mail the DC about stopping apfd service.you are limited at this point.
     
    rootbinbash, Apr 19, 2007 IP