Re: ssh



Darrell Stec wrote:
That OTOH is quite unnecessary.
Why don't you use a service like dyndns or similar?

Because if it gave me an advantage, then it gives a hacker an advantage too.

Please elaborate. People are trying to hit IP adresses all the time with
whatever. It does not matter for the hackers if it is linked to
http://hackme.houghi.org or the IP adress (or any other port like 22)

No difference for the hacker, much easier for me to remember that adress
(and yes, it is a vaild adress URL)

Yuck, DSL. In most of the areas of which I am familiar, the fastest DSL is
slower than the slowest cable. Heck in this town, Sprint's DSL is slower
that plain old dial-up. Cable always works much, much faster in this area,
and others where I have had clients.

Yack, Cable. Where I live Cable has fixed bandwith, no fixed IP, no
reversed DNS, ports blocked below 1024 and other fun stuff. Why should I
care about speed if I am done after 30 minutes of download into the
month. I have a not too bad ADSL+ connection. I could get a much higher
connection with a different modem.

If not, run the client on your computer.

It is just one more step up for a hacker.

No, it isn't. The connection is the target and they will be selected by
IP adress. Not using DynDNS because of security is security through
obscurity. Your firewall should take take of security. Your aplications
should take care of security.

The fact that I have have a fixed IP with a reversed so that you can
easily find out what my URL is does not make my machine less secure. If
anything it might mean I get more knocks on the door per day, but that
does not make it unsafer. It just makes it more annoying when looking at
logfiles.

houghi
--
For a long time now I have tried simply to write the best I can. Sometimes I
have good luck and write better than I can.
-- Ernest Hemingway
.



Relevant Pages

  • Re: ssh
    ... No difference for the hacker, much easier for me to remember that adress ... there is no http: attached to my personal computer. ... Not using DynDNS because of security is security through ...
    (alt.os.linux.suse)
  • [Full-Disclosure] Administrivia
    ... directly related to security concerns per se. ... I consider myself to be a hacker, ... >> was the motivation in days gone by. ... >> The idea that with great power comes great responsibility is one that I ...
    (Full-Disclosure)
  • Re: Crazy humanity: war against crimes against humanity and racism - or racist monopoly
    ... All I did is portray I am a hacker, ... As I approached this sect in Hong Kong, three times, they closed ... If your security people can't protect this place from me, ... When I left an old connection alive for ...
    (sci.astro)
  • Re: Mac OS X hacked under 30 minutes
    ... a Swedish Mac fan posted a web site that challenged all ... updated it to Mac OS X 10.4.5 and fixed some security issues. ... As there was no cash prize associated with the contest, ... The hacker, known only as "gwerdna," explained what he ...
    (comp.sys.mac.advocacy)
  • RE: 0-day exploit..do i hear $1000?
    ... security industry, then after money is confirmed deposited to fund, hacker ... Security firm 123 implement patches for brain dead clients. ... CUA codes the exploit ...
    (Pen-Test)