Use kernel sandbox for ssh

This commit is contained in:
Bob Mottram 2017-06-19 10:57:54 +01:00
parent 582cbe99d9
commit 7438e6ffc3
1 changed files with 2 additions and 0 deletions

View File

@ -88,6 +88,8 @@ function configure_ssh {
echo "KexAlgorithms $SSH_KEX" >> /etc/ssh/sshd_config
fi
sed -i "s|#KexAlgorithms $SSH_KEX|KexAlgorithms $SSH_KEX|g" /etc/ssh/sshd_config
sed -i 's|#UsePrivilegeSeparation .*|UsePrivilegeSeparation sandbox|g' /etc/ssh/sshd_config
sed -i 's|UsePrivilegeSeparation .*|UsePrivilegeSeparation sandbox|g' /etc/ssh/sshd_config
apt-get -yq install fail2ban vim-common