全球主机交流论坛

 找回密码
 注册

QQ登录

只需一步,快速开始

CeraNetworks网络延迟测速工具IP归属甄别会员请立即修改密码
查看: 4977|回复: 17
打印 上一主题 下一主题

[Windows VPS] BUYVM把vps停了,让我加强安全管理

[复制链接]
跳转到指定楼层
1#
发表于 2012-9-23 14:34:07 | 只看该作者 回帖奖励 |正序浏览 |阅读模式
This ticket is notification that your service (209.141.**.**) is now suspended for being used in an outbound DDoS attack. Investigation into this incident shows that your VPS (along with 4 others) were compromised, and used to attack a remote ChinaNet/APNIC server. As the nature of this compromise appears to have been a bruteforce technique, we are requiring that you perform a full reinstall of your VPS, and implementing the following SSH security measures:

- Assign a nonstandard port for SSH
- Disable root login
- Disable password authentication
- Enable and use RSA authentication for login

As this violation was the result of a compromise, no administrative action will be taken against you. However, please be aware that the reinstall and above security measure are absolutely mandatory; any further compromise from your VPS will be considered a second offense, and treated in accordance with our Terms of Service and Acceptable Usage Policy. Once you acknowledge and reply to this ticket, your service will be reactivated for you to perform the reinstall.


---
Aldryic C'boäs, Frantech Staff
[Email/MSN] [email protected]
[IRC] irc.frantech.ca / #frantech

=============================================
求助 这4个安全措置怎么做?
- Assign a nonstandard port for SSH
- Disable root login
- Disable password authentication
- Enable and use RSA authentication for login

18#
发表于 2012-9-23 17:24:47 | 只看该作者
ethan 发表于 2012-9-23 15:00
给我发信 就让我做下边这四个事。
但我不会做 啊
Assign a nonstandard port for SSH

让你用密匙登陆
17#
发表于 2012-9-23 16:15:09 | 只看该作者
看签名
16#
发表于 2012-9-23 16:13:28 | 只看该作者
早把默认密码改成200位的就成了,谁也破解不了你,也就没这屁事了
15#
发表于 2012-9-23 16:04:44 | 只看该作者

找找教程被
14#
发表于 2012-9-23 16:01:00 | 只看该作者
楼主去小夜博客那边观察一下就会发现了。他那里有修改端口和禁用root登陆的教程
13#
发表于 2012-9-23 15:28:33 | 只看该作者
100人民币包做好
12#
发表于 2012-9-23 15:25:34 | 只看该作者
看字面意思,是不是被侵入用来DDoS攻击ChinaNet/APNIC server
11#
发表于 2012-9-23 15:22:25 | 只看该作者
改SSH默认端口
禁用root登录
禁用密码认证
启用RSA​​身份验证登录
额。。。google乱来的。。。叫你做好安全措施,为啥啊?
10#
发表于 2012-9-23 15:22:20 | 只看该作者
Assign a nonstandard port for SSH
- Disable root login
- Disable password authentication
- Enable and use RSA authentication for login

修改ssh端口
禁用root登录
禁用密码登录
开启密钥认证登录
您需要登录后才可以回帖 登录 | 注册

本版积分规则

Archiver|手机版|小黑屋|全球主机交流论坛

GMT+8, 2025-12-20 06:21 , Processed in 0.161696 second(s), 12 queries , Gzip On, MemCache On.

Powered by Discuz! X3.4

© 2001-2023 Discuz! Team.

快速回复 返回顶部 返回列表