In addition to Weibo, there is also WeChat
Please pay attention
WeChat public account
Shulou
2025-01-17 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >
Share
Shulou(Shulou.com)06/01 Report--
This article mainly introduces "how rhel7 modifies ssh port". In daily operation, I believe many people have doubts about how rhel7 modifies ssh port. The editor consulted all kinds of materials and sorted out simple and easy-to-use methods of operation. I hope it will be helpful for you to answer the doubt of "how to modify ssh port by rhel7". Next, please follow the editor to study!
Rhel7 has more detailed security considerations and more stringent rule design. List the key modification steps and adjust the lab work record for SSH.
1. Modify SSH configuration file
Vi / etc/ssh/sshd_config
Modify port, disable root login, add restricted users
Port 2345
PermitRootLogin no
AllowUsers gino
two。 Modify iptables
Vi / etc/sysconfig/iptables
Copy port 22 ACCEPT rules
-An INPUT-m state-- state NEW-m tcp-p tcp-- dport 2345-j ACCEPT
3. Modify port contexts (key), need to modify context
Semanage port-a-t ssh_port_t-p tcp 2345
4. Restart the SSH service
/ etc/init.d/sshd restart
At this time, the SSH service has been migrated to port 2345, and only gino users can access it, which improves security.
Www.2cto.com
Appendix: semanage
1. Install semanage. By default, CentOS does not have this command. You need to see who provided this command.
Yum provides / usr/sbin/semanage
Then install it.
Yum-y install policycoreutils-python
2.semanage is used for prot context, such as viewing ssh port conditions.
Semanage port-l | grep ssh
The results should be as follows:
Ssh_port_t tcp 2345, 22
You can also use netstat for verification
Netstat-tulpn | grep 2345
At this point, the study on "how to modify the ssh port by rhel7" is over. I hope to be able to solve your doubts. The collocation of theory and practice can better help you learn, go and try it! If you want to continue to learn more related knowledge, please continue to follow the website, the editor will continue to work hard to bring you more practical articles!
Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.
Views: 0
*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.
Continue with the installation of the previous hadoop.First, install zookooper1. Decompress zookoope
"Every 5-10 years, there's a rare product, a really special, very unusual product that's the most un
© 2024 shulou.com SLNews company. All rights reserved.