OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: iptables & tcp wrappers

From: Jan Gerrit Göbel (Jan.Goebelpost.rwth-aachen.de)
Date: Wed Sep 29 2004 - 10:36:39 CDT


> My goal is to block all incoming ssh attempts except IP#.
> This is where I got into hosts.allow/deny as mentioned below.

why don´t you edit the /etc/ssh/sshd_config and add the lines "AllowUsers
usernamesomeIP"

example:
AllowUsers bla212.132.3.147, laberl212.132.3.*

that way you can restrict ssh logins to certain users from certain IPs or IP
ranges...

regards
jan