Register a SA Forums Account here!
JOINING THE SA FORUMS WILL REMOVE THIS BIG AD, THE ANNOYING UNDERLINED ADS, AND STUPID INTERSTITIAL ADS!!!

You can: log in, read the tech support FAQ, or request your lost password. This dumb message (and those ads) will appear on every screen until you register! Get rid of this crap by registering your own SA Forums Account and joining roughly 150,000 Goons, for the one-time price of $9.95! We charge money because it costs us money per month for bills, and since we don't believe in showing ads to our users, we try to make the money back through forum registrations.
 
  • Locked thread
The XKCD Larper
Mar 1, 2009

by Lowtax

Powaqoatse posted:

having an ssh client on my phone has saved my rear end a couple times

pretty pretty good

[Tedious real life content] I rode my bicycle from coast to caost and I used ssh on my phone to set up a linode lamp stack with ffmpeg so I could download music youtubes to my phone. It let me keep the phone on airplane mode and save battery

Adbot
ADBOT LOVES YOU

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe

The XKCD Larper posted:

[Tedious real life content] I rode my bicycle from coast to caost and I used ssh on my phone to set up a linode lamp stack with ffmpeg so I could download music youtubes to my phone. It let me keep the phone on airplane mode and save battery

yikes

Notorious b.s.d.
Jan 25, 2003

by Reene

The Management posted:

ssh is cool and good and we would all be using something much dumber without it. thanks OpenSSH

telnet over ssl was fine, on the face of it

what made ssh great was that it replaced the entire r* suite -- rsh, rcp, rdist all gone

Notorious b.s.d.
Jan 25, 2003

by Reene

JewKiller 3000 posted:

ssh is fuckin great, but i got some complaints about scp:
- if i say "scp localdir remote:location", scp will log in to the remote machine before erroring out and telling me that localdir is a directory, not a file
- then i try "scp -R localdir remote:location", which fails because scp uses -r, even though cp uses -R. there's no other meaning for -R in scp, it just doesn't work
- if i accidentally type "scp localfile remotehost" and forget a colon at the end, it just silently does a regular local copy with that filename, because i guess that's something i might ever want scp to do?

tar + ssh and rsync + ssh are both better than scp

George
Nov 27, 2004

No love for your made-up things.
rsync and mosh should be enough for anyone

The Management
Jan 2, 2010

sup, bitch?

George posted:

rsync and mosh should be enough for anyone

mosh is good and ssh should adopt some of its features

Agile Vector
May 21, 2007

scrum bored



Powaqoatse posted:

having an ssh client on my phone has saved my rear end a couple times

pretty pretty good

maybe not saved my rear end but it is good and handy to have easy remote access like that. i run a bunch of tiny personal services from some machines and being able to fix and maintain them easily is nice

cowboy beepboop
Feb 24, 2001

The Management posted:

mosh is good and ssh should adopt some of its features

mosh takes over my scrolling it's rude

Hed
Mar 31, 2004

Fun Shoe

Agile Vector posted:

tiny personal services

plz don't crib my tinder profile

Captain Foo
May 11, 2004

we vibin'
we slidin'
we breathin'
we dyin'

ssh, is good

Pile Of Garbage
May 28, 2007



rsync status: still garbage.

ssh is still ok.

Lysidas
Jul 26, 2002

John Diefenbaker is a madman who thinks he's John Diefenbaker.
Pillbug
the ssh-sepcific keyboard shortcuts are neato and i just recently learned about them

in some ssh session, press enter and then ~?

atomicthumbs
Dec 26, 2010


We're in the business of extending man's senses.
zsh: no matches found: ~?

post hole digger
Mar 21, 2011

COACHS SPORT BAR posted:

yeah ssh is pretty great i use it errydya ^H^H^H^H^H^H <[[ <[[]133;C;]133;D;0]133\
>
>
> ^c ^c ^c ^c

FamDav
Mar 29, 2008

cis autodrag posted:

we have to use yubikeys to ssh and it's a pita

do you not get the nano yubikeys or was that money spent on quarter sawn wood cut in the dead of winter

post hole digger
Mar 21, 2011

cis autodrag posted:

we have to use yubikeys to ssh and it's a pita

yubikeys are cool and the least annoying 2fa.

ate shit on live tv
Feb 15, 2004

by Azathoth

MALE SHOEGAZE posted:

ssh is an amazing tool. i cannot imagine how the internet would get done without ssh

post your favorite ssh tips and tricks, or just post about times ssh was good

SSH is too complicated. I just use nc, fewer keystrokes which improves my productivity.

hackbunny
Jul 22, 2007

I haven't been on SA for years but the person who gave me my previous av as a joke felt guilty for doing so and decided to get me a non-shitty av

Helianthus Annuus posted:

if you're one of these chucklefucks who sets an ssh port other than 22,

it drastically cuts down on login attempts from bots :ssh:

atomicthumbs
Dec 26, 2010


We're in the business of extending man's senses.
fail2ban and disable password authentication. you're welcome

post hole digger
Mar 21, 2011

atomicthumbs posted:

fail2ban and disable password authentication. you're welcome

fail2ban whips scrote

Helianthus Annuus
Feb 21, 2006

can i touch your hand
Grimey Drawer
*tries setting a custom ssh port for extra security*

*gets cokc blocked by selinux / apparmor*

*disables selinux and takes the rest of the day off*

FamDav
Mar 29, 2008

hackbunny posted:

it drastically cuts down on login attempts from bots :ssh:

who cares its your bastion server

post hole digger
Mar 21, 2011

Helianthus Annuus posted:

*tries setting a custom ssh port for extra security*

*gets cokc blocked by selinux / apparmor*

*disables selinux and takes the rest of the day off*

i dont use selinux

DaTroof
Nov 16, 2000

CC LIMERICK CONTEST GRAND CHAMPION
There once was a poster named Troof
Who was getting quite long in the toof

my bitter bi rival posted:

i dont use selinux

i can't remember if i use it or not

i assume i don't because everything seems to work atm

RISCy Business
Jun 17, 2015

bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork bork
Fun Shoe
anyone using selinux should be destroyed

Notorious b.s.d.
Jan 25, 2003

by Reene

RISCy Business posted:

anyone using selinux should be destroyed

this, but the opposite

Notorious b.s.d.
Jan 25, 2003

by Reene
if you don't have selinux (or similar*) enabled you don't have any security. have fun being owned.









* i am not super picky. if you would rather use apparmor or lomac or whatever godawful thing windows provides, whatever, that's fine i guess. the point is: enable mandatory access control.

Helianthus Annuus
Feb 21, 2006

can i touch your hand
Grimey Drawer
lol if you badmins are for real about turning off selinux and setting ssh port to 42069, heres a freebie

code:
semanage port -a -t ssh_port_t -p tcp 42069

cowboy beepboop
Feb 24, 2001

selinux could be a lot easier to use. more integrated into the default tooling and error messages would be a good start so people don't need to dig through the audit log with special tools

Agile Vector
May 21, 2007

scrum bored



atomicthumbs posted:

fail2ban and disable password authentication. you’re welcome

Farmer Crack-Ass
Jan 2, 2001

this is me posting irl
i use ssh to tunnel web traffic back through my home connection when i'm on a public wifi

Perplx
Jun 26, 2004


Best viewed on Orgasma Plasma
Lipstick Apathy
sshuttle is pretty cool, it's the poor man's vpn

sshuttle -r homecomputer.pos 192.168.1.0/24



also rsync is good

atomicthumbs
Dec 26, 2010


We're in the business of extending man's senses.
god wireguard can't happen soon enough

Adbot
ADBOT LOVES YOU

my homie dhall
Dec 9, 2010

honey, oh please, it's just a machine
sshuttle is extremely my poo poo

  • Locked thread