首页 > 其他 > 详细

SSH限制ip登陆

时间:2018-08-04 15:34:30      阅读:190      评论:0      收藏:0      [点我收藏+]

linux限制IP访问ssh

 

在/etc/hosts.allow输入   
(其中192.168.10.88是你要允许登陆ssh的ip,或者是一个网段192.168.10.0/24)   
sshd:192.168.10.88:allow   
    
在/etc/hosts.deny输入(表示除了上面允许的,其他的ip   都拒绝登陆ssh)   
sshd:ALL

 

更改端口
vi /etc/ssh/sshd_config
port 3333


最后一行加上ip
allowusers root@ip   ------------------允许某个ip用什么帐户登陆

 

实际示例:

cat /etc/hosts.allow 
#
# hosts.allow    This file contains access rules which are used to
#        allow or deny connections to network services that
#        either use the tcp_wrappers library or that have been
#        started through a tcp_wrappers-enabled xinetd.
#
#        See man 5 hosts_options and man 5 hosts_access
#        for information on rule syntax.
#        See man tcpd for information on tcp_wrappers
#
sshd:192.168.0.0/24:allow 
sshd:172.20.18.0/24:allow 
sshd:10.8.0.0/24:allow 
 cat /etc/hosts.deny 
#
# hosts.deny    This file contains access rules which are used to
#        deny connections to network services that either use
#        the tcp_wrappers library or that have been
#        started through a tcp_wrappers-enabled xinetd.
#
#        The rules in this file can also be set up in
#        /etc/hosts.allow with a deny option instead.
#
#        See man 5 hosts_options and man 5 hosts_access
#        for information on rule syntax.
#        See man tcpd for information on tcp_wrappers
#
sshd:ALL

systemctl restart sshd

验证只能内网登录 ,外网无法登录

 

 

SSH限制ip登陆

原文:https://www.cnblogs.com/weifeng1463/p/9418655.html

(0)
(0)
   
举报
评论 一句话评论(0
关于我们 - 联系我们 - 留言反馈 - 联系我们:wmxa8@hotmail.com
© 2014 bubuko.com 版权所有
打开技术之扣,分享程序人生!