Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

How to modify ssh Port by rhel7

2025-01-17 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Servers >

Share

Shulou(Shulou.com)06/01 Report--

This article mainly introduces "how rhel7 modifies ssh port". In daily operation, I believe many people have doubts about how rhel7 modifies ssh port. The editor consulted all kinds of materials and sorted out simple and easy-to-use methods of operation. I hope it will be helpful for you to answer the doubt of "how to modify ssh port by rhel7". Next, please follow the editor to study!

Rhel7 has more detailed security considerations and more stringent rule design. List the key modification steps and adjust the lab work record for SSH.

1. Modify SSH configuration file

Vi / etc/ssh/sshd_config

Modify port, disable root login, add restricted users

Port 2345

PermitRootLogin no

AllowUsers gino

two。 Modify iptables

Vi / etc/sysconfig/iptables

Copy port 22 ACCEPT rules

-An INPUT-m state-- state NEW-m tcp-p tcp-- dport 2345-j ACCEPT

3. Modify port contexts (key), need to modify context

Semanage port-a-t ssh_port_t-p tcp 2345

4. Restart the SSH service

/ etc/init.d/sshd restart

At this time, the SSH service has been migrated to port 2345, and only gino users can access it, which improves security.

Www.2cto.com

Appendix: semanage

1. Install semanage. By default, CentOS does not have this command. You need to see who provided this command.

Yum provides / usr/sbin/semanage

Then install it.

Yum-y install policycoreutils-python

2.semanage is used for prot context, such as viewing ssh port conditions.

Semanage port-l | grep ssh

The results should be as follows:

Ssh_port_t tcp 2345, 22

You can also use netstat for verification

Netstat-tulpn | grep 2345

At this point, the study on "how to modify the ssh port by rhel7" is over. I hope to be able to solve your doubts. The collocation of theory and practice can better help you learn, go and try it! If you want to continue to learn more related knowledge, please continue to follow the website, the editor will continue to work hard to bring you more practical articles!

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Servers

Wechat

© 2024 shulou.com SLNews company. All rights reserved.

12
Report