{"id":46,"date":"2021-01-04T21:22:49","date_gmt":"2021-01-04T13:22:49","guid":{"rendered":"https:\/\/explause.com\/?p=46"},"modified":"2021-04-11T20:03:53","modified_gmt":"2021-04-11T12:03:53","slug":"centos%e6%9b%b4%e6%94%b9ssh%e7%ab%af%e5%8f%a3","status":"publish","type":"post","link":"https:\/\/devdoge.org\/?p=46","title":{"rendered":"CentOS\u66f4\u6539SSH\u7aef\u53e3"},"content":{"rendered":"\n<p class=\"wp-block-paragraph\">\u4e70\u4e86\u670d\u52a1\u5668\u7684\u7b2c\u4e00\u4ef6\u4e8b\uff0c\u6539\u5bc6\u7801\uff0c\u987a\u4fbf\u6539\u4e00\u4e0bSSH\u7aef\u53e3\uff0c\u53ef\u4ee5\u4e00\u4e0b\u589e\u5927\u8d85\u591a\u5b89\u5168\u6027\u3002\u6709\u8d85\u591a\u811a\u672c\u5c0f\u5b50\u626b\u63cf\u670d\u52a1\u5668\u7684\u7aef\u53e3\uff0822\uff09\uff0c\u5c1d\u8bd5\u66b4\u529b\u7834\u89e3\uff0c\u7834\u89e3\u4e86\u5c31\u5f00\u59cb\u53d1\u5783\u573e\u90ae\u4ef6\uff0c\u6216\u8005\u53d1\u5305\u641eDDoS\u653b\u51fb\uff01<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u867d\u7136\u53ef\u4ee5\u4f7f\u7528fail2ban\u4e4b\u7c7b\u7684\u8f6f\u4ef6\uff0c\u4f46\u662f\u90a3\u4e48\u591a\u7684\u811a\u672c\u5c0f\u5b50\u4f1a\u641e\u5f97\u670d\u52a1\u5668\u8d1f\u8f7d\u5347\u9ad8\u3002\u6216\u8005\u53ef\u4ee5\u7528\u5bc6\u94a5\u767b\u9646\u3002<\/p>\n\n\n\n<p class=\"wp-block-paragraph\">\u8981\u6539SSH\u7aef\u53e3\u53f7\uff0c\u9996\u5148\u8981\u4fee\u6539SSH\u670d\u52a1\u5668\u7684\u914d\u7f6e\u6587\u4ef6\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>vi \/etc\/ssh\/sshd_config<\/code><\/pre>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"280\" height=\"116\" src=\"https:\/\/explause.com\/wp-content\/uploads\/2021\/01\/sshd.png\" alt=\"\" class=\"wp-image-47\"\/><\/figure><\/div>\n\n\n\n<pre class=\"wp-block-verse\">\u627e\u5230\u4e0a\u9762\u7684\u5b57\u7b26\uff0c\u53bb\u6389<strong><em>Port<\/em><\/strong>\u524d\u9762\u7684#\uff0c\u7136\u540e\u5c0622\u6539\u62101-65535\u4e4b\u95f4\u7684\u6570\u5b57\uff08\u5c3d\u91cf\u5f80\u5927\u7684\u6570\u5b57\u4e0a\u9760\u8fd1\uff0c\u598260000\uff09\uff0c\n\u5982\u679c\u4e0d\u60f3SSH\u670d\u52a1\u5668\u76d1\u542cIPv6\u5730\u5740\uff0c\u53ef\u4ee5\u53bb\u6389AddressFamily\u524d\u9762\u7684#\uff0c\u7136\u540e\u5c06any\u6539\u6210inet\uff1a<\/pre>\n\n\n\n<div class=\"wp-block-image\"><figure class=\"aligncenter size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"298\" height=\"118\" src=\"https:\/\/explause.com\/wp-content\/uploads\/2021\/01\/PortChanged.png\" alt=\"\" class=\"wp-image-48\"\/><\/figure><\/div>\n\n\n\n<p class=\"wp-block-paragraph\">\u5982\u679c\u5f00\u542f\u4e86selinux\uff0c\u90a3\u8fd8\u8981\u6388\u6743SSH\u670d\u52a1\u5668\u7ed1\u5b9a\u5bf9\u5e94\u7684\u7aef\u53e3\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>yum install setroubleshoot -y\nsemanage port -a -t ssh_port_t -p tcp 60000<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">\u5982\u679c\u4f7f\u7528iptables\u9632\u706b\u5899\u4f1a\u9ebb\u70e6\u4e00\u70b9\uff0c\u5982\u679c\u662f\u7cfb\u7edf\u81ea\u5e26\u7684firewalld\u9632\u706b\u5899\u5219\u6dfb\u52a0\u5141\u8bb8\u8bbf\u95ee\u5bf9\u5e94\u7aef\u53e3\u7684\u89c4\u5219\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>firewall-cmd --add-port=60000\/tcp\nfirewall-cmd --add-port=60000\/tcp --permanent<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">\u7136\u540e\u91cd\u542fSSH\u670d\u52a1\u5668\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>systemctl restart sshd<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">\u8f93\u5165\u4e0b\u5217\u547d\u4ee4\u53ef\u4ee5\u67e5\u770bSSH\u670d\u52a1\u5668\u53c8\u6ca1\u6709\u6210\u529f\u5f00\u542f\u5e76\u76d1\u542c\uff1a<\/p>\n\n\n\n<pre class=\"wp-block-code\"><code>netstat -lnpt<\/code><\/pre>\n\n\n\n<p class=\"wp-block-paragraph\">\u51fa\u73b0\u4e0b\u5217\u4fe1\u606f\u5c31\u6210\u529f\u66f4\u6539\uff1a<\/p>\n\n\n\n<figure class=\"wp-block-image size-large\"><img loading=\"lazy\" decoding=\"async\" width=\"1024\" height=\"69\" src=\"https:\/\/explause.com\/wp-content\/uploads\/2021\/01\/sshd-1-1024x69.png\" alt=\"\" class=\"wp-image-49\" srcset=\"https:\/\/devdoge.org\/wp-content\/uploads\/2021\/01\/sshd-1-1024x69.png 1024w, https:\/\/devdoge.org\/wp-content\/uploads\/2021\/01\/sshd-1-300x20.png 300w, https:\/\/devdoge.org\/wp-content\/uploads\/2021\/01\/sshd-1-768x51.png 768w, https:\/\/devdoge.org\/wp-content\/uploads\/2021\/01\/sshd-1.png 1166w\" sizes=\"auto, (max-width: 1024px) 100vw, 1024px\" \/><\/figure>\n\n\n\n<p class=\"wp-block-paragraph\"><\/p>\n","protected":false},"excerpt":{"rendered":"<p>\u6539\u51e0\u4e2a\u6570\u5b57\u5c31\u80fd\u89e3\u51b3\uff0c\u4e00\u70b9\u90fd\u4e0d\u96be\uff01<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[8],"tags":[22],"class_list":["post-46","post","type-post","status-publish","format-standard","hentry","category-opt","tag-22"],"blocksy_meta":{"styles_descriptor":{"styles":{"desktop":"","tablet":"","mobile":""},"google_fonts":[],"version":6}},"_links":{"self":[{"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/posts\/46","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/devdoge.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=46"}],"version-history":[{"count":2,"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/posts\/46\/revisions"}],"predecessor-version":[{"id":156,"href":"https:\/\/devdoge.org\/index.php?rest_route=\/wp\/v2\/posts\/46\/revisions\/156"}],"wp:attachment":[{"href":"https:\/\/devdoge.org\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=46"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/devdoge.org\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=46"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/devdoge.org\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=46"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}