Live data from Hacker News

SSH for Fun and Profit

karla.io

41–50 of 76 posts

Re: SSH for Fun and Profit

#41
post #36

Earlier quoted context omitted.

Thanks! I'll try to add one later this week, I've been meaning to :)

That would be really great! It's always a pity when this happens: - I read a great article. - I have a look at the rest of the blog, seeing more interesting articles. - I see that the posting frequency is low. [1] - I want to add it to my QuiteRSS reader, but there is no Atom/RSS feed. [1] Which is actually a very good sign! Daily posters are inevitably posting mostly crap, and I'm too tired of such blogs to pick out…

There are several services out there that will create an RSS feed out of any web page. They do this by periodically scraping the page's contents for you. https://feedity.com/ is pretty good; there are others.

Re: SSH for Fun and Profit

#42
It's interesting that "The transport protocol doesn’t cover who sends their banner first". It'd be good if I could configure my server to keep quiet until the client identifies itself as an SSH client. I run it on an unusual port and it gets scanned frequently. sshguard helps but I'd prefer it wasn't announcing to any client that it is an ssh server.

Re: SSH for Fun and Profit

#43
post #42

It's interesting that "The transport protocol doesn’t cover who sends their banner first". It'd be good if I could configure my server to keep quiet until the client identifies itself as an SSH client. I run it on an unusual port and it gets scanned frequently. sshguard helps but I'd prefer it wasn't announcing to any client that it is an ssh server.

Sslh would give you this ability, if you're prepared to shim an extra program infront of your daemon; http://www.rutschle.net/tech/sslh.shtml

Re: SSH for Fun and Profit

#44
post #42

It's interesting that "The transport protocol doesn’t cover who sends their banner first". It'd be good if I could configure my server to keep quiet until the client identifies itself as an SSH client. I run it on an unusual port and it gets scanned frequently. sshguard helps but I'd prefer it wasn't announcing to any client that it is an ssh server.

How does sshguard compare to fail2ban?

Re: SSH for Fun and Profit

#45
post #37
post #35

Earlier quoted context omitted.

We detached this subthread from https://news.ycombinator.com/item?id=11608610 and marked it off-topic.

Thanks! Hint to all who participated in that ugly thread: The inital comments were bad, but I found it even worse to see how many people engaged this, making that ugly thread larger and larger. It became so large that it finally displaced all the good, on-topic comments! If you really want to show respect for the author, just downvote + flag the ugly comments, and be done with it. Then, go on and use your time to pos…

Should the children of flagged/dead comments be hidden by default as well ?

Re: SSH for Fun and Profit

#47
post #46

It'd be nice to be gender neutral :)

Really? While talking in a context of a specific post, written by a male?

Yes, because the comment refers to "stories like these", and not only the specific story in question. Also, what makes you think the author is male?

Re: SSH for Fun and Profit

#50
post #46

It'd be nice to be gender neutral :)

Really? While talking in a context of a specific post, written by a male?

Not to presume which gender OP identifies with, but if you take a look at their GitHub profile, you'd probably come to the conclusion the the writer is not male.

Since the specific context matters to you, would you now suggest the parent of this thread then change the pronoun to "she" instead?

Post reply on HN