<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Time to get a new set of keys</title>
	<atom:link href="http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/</link>
	<description>The views of one man on security, privacy and anything else that catches his attention</description>
	<pubDate>Wed, 20 Aug 2008 09:56:21 +0000</pubDate>
	<generator>http://wordpress.org/?v=abc</generator>
		<item>
		<title>By: Eric</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1903</link>
		<dc:creator>Eric</dc:creator>
		<pubDate>Thu, 15 May 2008 20:40:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1903</guid>
		<description>As Martin said, I'd recommend updating your system and regenerating your keys either way.  It's probably good practice to regenerate them pretty frequently.  I did a brief audit of my /var/log/auth and noticed an increased number of ssh-scans.  From a simple regional ISP, 4 a day seems pretty excessive.  Of course I've got my honeypot set to give them 4 shots to log in before rejecting them for good, so I'd love to know how much they'd be hitting it if they were trying to brute force it.</description>
		<content:encoded><![CDATA[<p>As Martin said, I&#8217;d recommend updating your system and regenerating your keys either way.  It&#8217;s probably good practice to regenerate them pretty frequently.  I did a brief audit of my /var/log/auth and noticed an increased number of ssh-scans.  From a simple regional ISP, 4 a day seems pretty excessive.  Of course I&#8217;ve got my honeypot set to give them 4 shots to log in before rejecting them for good, so I&#8217;d love to know how much they&#8217;d be hitting it if they were trying to brute force it.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Martin</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1900</link>
		<dc:creator>Martin</dc:creator>
		<pubDate>Thu, 15 May 2008 19:29:38 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1900</guid>
		<description>I'm not certain, but I suspect they are.  I don't have any linux servers at home anymore and I'm not responsible for any professionally, so I haven't looked into the issue other than the basics.

Martin</description>
		<content:encoded><![CDATA[<p>I&#8217;m not certain, but I suspect they are.  I don&#8217;t have any linux servers at home anymore and I&#8217;m not responsible for any professionally, so I haven&#8217;t looked into the issue other than the basics.</p>
<p>Martin</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Eric</title>
		<link>http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1899</link>
		<dc:creator>Eric</dc:creator>
		<pubDate>Thu, 15 May 2008 19:04:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.mckeay.net/2008/05/15/time-to-get-a-new-set-of-keys/#comment-1899</guid>
		<description>Was this addressed with the OpenSSH update that came out over the past 2 days?</description>
		<content:encoded><![CDATA[<p>Was this addressed with the OpenSSH update that came out over the past 2 days?</p>
]]></content:encoded>
	</item>
</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.415 seconds -->
