SSH miseries - it's time to break out the firewall | Linux Today

SSH miseries – it’s time to break out the firewall

Written By
Web Webster
Web Webster
Nov 4, 1998

By Dave Whitinger

Like it or not, if you are using ssh, you could very well be
vulnerable to an unknown remote root-exploit. Despite alleged false
statements about vulnerabilities (posted to the BUGTRAQ mailing
list), it will be extremely un-wise to continue to allow ssh access
to all hosts on the Internet.

Aleph One (moderator of BUGTRAQ) suggests:

“All persons that have examined the ssh code so far have
found it to be secure (so far). If you require a safety net to
sleep well at night while running sshd I recommend you recompile it
with the StackGuard compiler (if you are running on a x86 or want
to port it).

http://www.cse.ogi.edu/DISC/projects/immunix/StackGuard/

Failing this, you may consider using some simple firewall rules
to disallow ssh access except to known (and trusted) hosts. If you
need a script to do this, just let us know and we’ll try
to help.

Web Webster

Web Webster

Web Webster has more than 20 years of writing and editorial experience in the tech sector. He’s written and edited news, demand generation, user-focused, and thought leadership content for business software solutions, consumer tech, and Linux Today, he edits and writes for a portfolio of tech industry news and analysis websites including webopedia.com, and DatabaseJournal.com.

Linux Today Logo

LinuxToday is a trusted, contributor-driven news resource supporting all types of Linux users. Our thriving international community engages with us through social media and frequent content contributions aimed at solving problems ranging from personal computing to enterprise-level IT operations. LinuxToday serves as a home for a community that struggles to find comparable information elsewhere on the web.

Property of TechnologyAdvice. © 2026 TechnologyAdvice. All Rights Reserved

Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.