Security Protection Suggestions

C

Chris Rivera

Guest
I have found some brute force attacks from a vm trying to access a hostnode.

1. Is it possible for me to change the default ssh port to a custom one and not mess up proxmox?
2. Is it possible for me to change apache default port without messing anything up?
3. Is there an application or script that can be run to better protect against this type of intrusion?
 
Maybe you need to put a firewall in front your cluster and configure VPN access to your hostnodes.

Also you must need to isolate hostnodes network using a dedicated vlan.

In our setup we must access to webui and ssh only through VPN. We put a Pfsense firewall in front all our infrastructure.

Sorry my bad english
 
I have found some brute force attacks from a vm trying to access a hostnode.

1. Is it possible for me to change the default ssh port to a custom one and not mess up proxmox?
2. Is it possible for me to change apache default port without messing anything up?
3. Is there an application or script that can be run to better protect against this type of intrusion?
Hi,
fail2ban is a nice tool for that (i use it for other installations).

Take a look here: http://pve.proxmox.com/wiki/Fail2ban

Udo
 
Maybe you need to put a firewall in front your cluster and configure VPN access to your hostnodes.

Also you must need to isolate hostnodes network using a dedicated vlan.

In our setup we must access to webui and ssh only through VPN. We put a Pfsense firewall in front all our infrastructure.

I agree with this suggestion.

Changing default ports adds no security, it might fool some dumb bots but not hackers.
Fail2Ban can help make it more difficult to brute force(which is good), but it does not add security. For example, a flaw in a service like SSH or apache could be exploited without triggering fail2ban.

If you seek security, isolate the host machines on a different network and use a VPN to access that network when you need to manage things.
 

About

The Proxmox community has been around for many years and offers help and support for Proxmox VE, Proxmox Backup Server, and Proxmox Mail Gateway.
We think our community is one of the best thanks to people like you!

Get your subscription!

The Proxmox team works very hard to make sure you are running the best software and getting stable updates and security enhancements, as well as quick enterprise support. Tens of thousands of happy customers have a Proxmox subscription. Get yours easily in our online shop.

Buy now!