Nazo
2[H]4U
- Joined
- Apr 2, 2002
- Messages
- 3,672
Well, I've really wanted to be able to access my sshd server when not at home. I didn't particularly want to open it to the whole world because I just don't like the idea that someone could eventually maybe brute force their way in. Since that system is still one I plan to use for non-server purposes on a few rare occasion (ok, at this point it almost is just a dedicated server, but, every now and then I use it as an HTPC) I don't particularly like the idea that someone could just get in and wipe out the harddrive given enough time (not easy, you have to login as a user then root because direct root login is disabled on the system -- not just sshd) and, for that matter, that system has unrestricted access to the internal network (it's a firewall right now) which are both windows systems.
I added a dns address for the school I'm usually trying to access from when I try to access it while away, but, I still aways get connection refused, so I can only conclude that it's not getting a DNS but just going by IP. Is my only option to try to figure out the entire IP range the school uses and allow all those ranges? They seem to have multiple ranges that as nearly as I can tell are randomly assigned even (at least it felt random on the few systems I tried -- I didn't go around checking the whole school.) Right now it does look to me like that's the only way to do it, but, just to be sure, isn't there any other? Or, are there any alternatives to handling the whole situation more cleanly?
I added a dns address for the school I'm usually trying to access from when I try to access it while away, but, I still aways get connection refused, so I can only conclude that it's not getting a DNS but just going by IP. Is my only option to try to figure out the entire IP range the school uses and allow all those ranges? They seem to have multiple ranges that as nearly as I can tell are randomly assigned even (at least it felt random on the few systems I tried -- I didn't go around checking the whole school.) Right now it does look to me like that's the only way to do it, but, just to be sure, isn't there any other? Or, are there any alternatives to handling the whole situation more cleanly?