Re: [bitfolk] The perils of opening tcp/22 to the Internet

Top Page
Author: Hugo Mills
Date:  
To: Kai Hendry
CC: users
Subject: Re: [bitfolk] The perils of opening tcp/22 to the Internet

Reply to this message
gpg: Signature made Sun Mar 14 10:59:39 2010 UTC using DSA key ID 515C238D
gpg: Can't check signature: public key not found
On Sun, Mar 14, 2010 at 09:25:39AM +0000, Kai Hendry wrote:
> Changing the port is a no no.
>
> 'PasswordAuthentication no' and ssh keys is the right solution. If a
> customer can't figure out how to generate an ssh key with puttgen or
> ssh-keygen, I wouldn't take them.


It might be the Right Thing, but restricting your customer base to
those people who can do it and are willing to do it, *and* spending
large amounts of time in training (or large amounts of time
discovering that they can't manage it or can't be bothered) isn't
really a good business plan.

Hugo.

-- 
=== Hugo Mills: hugo@... carfax.org.uk | darksatanic.net | lug.org.uk ===
  PGP key: 515C238D from wwwkeys.eu.pgp.net or http://www.carfax.org.uk
                        --- argc, argv, argh! ---