4 ms·
No, this is pretty expected. All the script kiddies are scanning port 22 and nothing else. Recently I made the mistake of changing a root password (I know, SSH
by Macuyiko 9y ago
No, this is pretty expected. All the script kiddies are scanning port 22 and nothing else. Recently I made the mistake of changing a root password (I know, SSH root acc ss, bad idea) to a dictionary word. In 1 minute the system was penetrated.
With a nonstandard port, bots mostly don't even bother to scan you.
- throwaway613834 9y agoInteresting, good to know, thanks for confirming. I guess security by obscurity is quite effective!
- MayeulC 9y agoTechnically, for an uninformed attacker, this is just one more level of entropy added to your password (multiply the combinations by 65635 - and then more in practice, as you have to account for the fact that this has a low probability of occurring from the viewpoint of the attacker). It just really is a part of your password (albeit one that can be guessed easily by a more dedicated attacker, just like the username).
- throwaway613834 9y agoRight :)
- marcosdumay 9y agoIt is not plain added entropy. You can't multiply the complexity (or add the entropy) because there is a signal when the attack makes a partial guess (he gets the openssh prompt). The added entropy is a bit harder to calculate, but unless your password has 16 bits of entropy¹, it will round pretty well to zero. 1 - Why TF would you run a ssh server that accepts passwords anyway? But nearly everybody I have seen that thinks changing the port is a good form of protection also sees no problem on accepting them.