summaryrefslogtreecommitdiff
path: root/sshd_config
diff options
context:
space:
mode:
authorYour Name <you@example.com>2026-02-07 19:58:55 +0800
committerYour Name <you@example.com>2026-02-07 19:58:55 +0800
commitd1cebc658174a16014c2a3847bdf55bb3553b7fb (patch)
tree843abd31aabf15bdf9c78314c69922a5df586531 /sshd_config
parent7bd52ea1ae10870cc2ff8aa5c237679c30ffda72 (diff)
more robust for ssh floods
Diffstat (limited to 'sshd_config')
-rw-r--r--sshd_config4
1 files changed, 4 insertions, 0 deletions
diff --git a/sshd_config b/sshd_config
index ab4c469..5d31e36 100644
--- a/sshd_config
+++ b/sshd_config
@@ -3,4 +3,8 @@ PermitRootLogin prohibit-password
3PasswordAuthentication no 3PasswordAuthentication no
4PubkeyAuthentication yes 4PubkeyAuthentication yes
5AuthorizedKeysFile /git/.ssh/authorized_keys 5AuthorizedKeysFile /git/.ssh/authorized_keys
6# Max 3 concurrent unauthenticated connections, drop 50% above that, hard cap at 10
7MaxStartups 3:50:10
8# Kill unauthenticated connections after 15 seconds
9LoginGraceTime 15
6Subsystem sftp /usr/lib/ssh/sftp-server 10Subsystem sftp /usr/lib/ssh/sftp-server