5 comments

[ 3.0 ms ] story [ 22.2 ms ] thread
I'm a big proponent of changing the SSH port. That right there makes life a lot easier when dealing with brute force attempts.

You can also make an IP tables taste limit on that port.

My only excuse for not changing port is workflow, needing to add the flag or : on the address is too much :P
You can define globals on your machine.

ssh $main or ssh $mail

Makes it even easier, don't need to remember domain, port, or user.