Security warning with sshd

Remko Lodder remko at FreeBSD.org
Sun Aug 21 10:10:45 GMT 2005


Pat Maddox wrote:
> On 8/21/05, Remko Lodder <remko at freebsd.org> wrote:
> 
>>Pat Maddox wrote:
>>
> 
> I don't know what exactly was happening, but after looking at that
> link my guess is that it occurred when I enabled the firewall.  If I'm
> logged in and enable it, my ssh connection is dropped...except I don't
> get disconnected, the ssh connection is simply unresponsive.  Which
> makes sense since the firewall just went up.  But maybe that's part of
> the problem?

Well that can easily be, people are speaking about "statefull" packets
here.  Do you use statefull filtering on your firewall?  Are you able
to "see" the dropped packets (dropped by your firewall)?  If so you
might want to enable statefull filtering for your ssh sessions..

Hope this helps,

cheers

-- 
Kind regards,

      Remko Lodder               ** remko at elvandar.org
      FreeBSD                    ** remko at FreeBSD.org
      Reporter DSINET            ** remko at DSINet.org


More information about the freebsd-questions mailing list