zoukankan      html  css  js  c++  java
  • Change SSH Welcome Banner on Ubuntu

    One of the easiest way to protect and secure SSH logins by displaying warming message to UN-authorized users or display welcome or informational messages to authorized users.

    Being a system administrator whenever configure Linux servers I always use to configure a security banners for ssh logins. The banner contains some security warning information or general information. See my example banner message which I used for my all servers.

    ALERT! You are entering into a secured area! Your IP, Login Time, Username has been noted and has been sent to the server administrator!
    This service is restricted to authorized users only. All activities on this system are logged.
    Unauthorized access will be fully investigated and reported to the appropriate law enforcement agencies.

    There are two way to display messages one is using issue.net file and second one is using MOTD file.

    1. issue.net : Display a banner message before the password login prompt.
    2. motd : Display a banner message after the user has logged in.

    So, I strongly recommended all system administrator to display a banner messages before allowing users to log in to systems. Just follow below simple steps to enable SSH logging messages.

    Display SSH Warning Message to Users Before Login

    To display Welcome or Warning message for SSH users before login. We use issue.net file to display a banner massages. Open the following file with VI editor.

    # vi /etc/issue.net

    Add the following banner sample message and save the file. You can add any custom banner message to this file.

    ###############################################################
    #                                                      Welcome to TecMint.com                                                           # 
    #                                   All connections are monitored and recorded                                         #
    #                          Disconnect IMMEDIATELY if you are not an authorized user!                    #
    ###############################################################

    Open the master ssh configuration file and enable banners.

    # vi /etc/ssh/sshd_config

    Search for the word “Banner” and uncomment out the line and save the file.

    #Banner /some/path

    It should be like this.

    Banner /etc/issue.net (you can use any path you want)

    Next, restart the SSH daemon to reflect new changes.

    # /etc/init.d/sshd restart
    Stopping sshd:                                             [  OK  ]
    Starting sshd:                                             [  OK  ]

    Now try to connect to server you will see banner message similar to below.

    Display SSH Banner Messages

    SSH Banner Messages Before Login

    Display SSH Warning Message to Users After Login

    To display banner messages after login, we use motd file, which is used to display banner massages after login. Now open it with VI editor.

    vi /etc/motd

    Place the following banner sample message and save the file.

    ###############################################################
    #                                                   Welcome to TecMint.com                                                             # 
    #                                    All connections are monitored and recorded                                       #
    #                           Disconnect IMMEDIATELY if you are not an authorized user!                  #
    ###############################################################

    Now again try to login into server you will get both the banner messages. See the screenshot attached below.





  • 相关阅读:
    Selenium的WebDriver API元素定位中的XPath和CSS
    Python中pytesseract库的使用以及注意事项
    Lua语言15分钟快速入门
    day 31 综合架构实时同步服务
    day 30 综合架构存储服务
    day 29 综合架构备份项目
    day 28 综合架构备份服务
    day 27 综合架构开场介绍
    操作系统磁盘管理
    操作系统定时任务
  • 原文地址:https://www.cnblogs.com/jins-note/p/9513341.html
Copyright © 2011-2022 走看看