<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		xmlns:itunes="http://www.itunes.com/dtds/podcast-1.0.dtd"
	xmlns:media="http://search.yahoo.com/mrss/"
	>
<channel>
	<title>Comments on: Time to get a new set of keys</title>
	<atom:link href="http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/</link>
	<description>The views of one man on security, privacy and anything else that catches his attention.  The views expressed on this blog do not reflect the views of my employer or anyone other than myself.</description>
	<lastBuildDate>Thu, 02 Feb 2012 21:45:54 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=</generator>
	<item>
		<title>By: Eric</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/comment-page-1/#comment-1903</link>
		<dc:creator>Eric</dc:creator>
		<pubDate>Thu, 15 May 2008 20:40:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1903</guid>
		<description>As Martin said, I&#039;d recommend updating your system and regenerating your keys either way.  It&#039;s probably good practice to regenerate them pretty frequently.  I did a brief audit of my /var/log/auth and noticed an increased number of ssh-scans.  From a simple regional ISP, 4 a day seems pretty excessive.  Of course I&#039;ve got my honeypot set to give them 4 shots to log in before rejecting them for good, so I&#039;d love to know how much they&#039;d be hitting it if they were trying to brute force it.</description>
		<content:encoded><![CDATA[<p>As Martin said, I&#8217;d recommend updating your system and regenerating your keys either way.  It&#8217;s probably good practice to regenerate them pretty frequently.  I did a brief audit of my /var/log/auth and noticed an increased number of ssh-scans.  From a simple regional ISP, 4 a day seems pretty excessive.  Of course I&#8217;ve got my honeypot set to give them 4 shots to log in before rejecting them for good, so I&#8217;d love to know how much they&#8217;d be hitting it if they were trying to brute force it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Martin</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/comment-page-1/#comment-1900</link>
		<dc:creator>Martin</dc:creator>
		<pubDate>Thu, 15 May 2008 19:29:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1900</guid>
		<description>I&#039;m not certain, but I suspect they are.  I don&#039;t have any linux servers at home anymore and I&#039;m not responsible for any professionally, so I haven&#039;t looked into the issue other than the basics.

Martin</description>
		<content:encoded><![CDATA[<p>I&#8217;m not certain, but I suspect they are.  I don&#8217;t have any linux servers at home anymore and I&#8217;m not responsible for any professionally, so I haven&#8217;t looked into the issue other than the basics.</p>
<p>Martin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eric</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/comment-page-1/#comment-1899</link>
		<dc:creator>Eric</dc:creator>
		<pubDate>Thu, 15 May 2008 19:04:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1899</guid>
		<description>Was this addressed with the OpenSSH update that came out over the past 2 days?</description>
		<content:encoded><![CDATA[<p>Was this addressed with the OpenSSH update that came out over the past 2 days?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

