[Info-vax] runaway TCP/IP ssh server processes

Stephen Hoffman seaohveh at hoffmanlabs.invalid
Sun Jul 16 13:59:36 EDT 2017


On 2017-07-16 15:26:27 +0000, VAXman-  @SendSpamHere.ORG said:

> I NEVER configure ssh on 22.  It's always high up in the ephemeral port range.

Obfuscation isn't reliable, and botnets have increasingly massive 
computes available to explore IPv4 address space, and there are search 
engines that make finding these obfuscations yet easier for folks not 
actively running botnets.   Once the knowledge becomes available, 
you're headed toward port knocking or that ilk, or implementing and 
running a VPN server upstream of the OpenVMS boxes.




-- 
Pure Personal Opinion | HoffmanLabs LLC 




More information about the Info-vax mailing list