Disabling logins except for specific IPs

From: Ashwin Milind Purohit (purohit@stanford.edu)
Date: Thu Jul 27 2006 - 15:07:11 EDT


Hello all,

I've got an OSF1 computer I need to secure due to computers around it being compromised. I need to disable logins for all users except from specific IP addresses of computers physically located around it, for added security measures.
I want to completely cover the bases - terminal logins, SSH, you name it - I believe I have to edit the /etc/securettys file a_conf files. What I'm basically looking for is a set of lines (in all files necessary to completely secure the machine) that, in
human readable code, says "Allow logins from the following IP addresses only, via terminal, SSH, and everything else: xxx.xxx.xx.xx". If anyone can let me know how to go about doing this, or point me to a how-to of some sort, that would be great!

Thanks,
Ashwin Purohit
purohit@stanford.edu



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:50:31 EDT