
![]() Telnet (SSH) In This Section: » How do I setup Telnet/SSH? » Troubleshooting Error Messages How do I setup Telnet/SSH? Top As the Internet grows it is more frequently the subject of security breaches. The easiest way to hack a Web site is to setup a sniff program, usually at an ISP and grab the username and password where a user is logging into. This is very easily done when a client uses telnet because telnet passes all information to the server in clear text. When we allowed users to access our network with Telnet we had at least one hack attempt per day. Successful hack attempts result in damaged or destroyed sites, stolen information, and FBI investigations. LA InterWeb now has one of the most secure networks thanks to the cooperation of all shell account users who are abandoning Telnet and accessing their account via Secure Shell (SSH). SSH does not pass any information in clear text but rather uses secure encryption. To get started with SSH, you must do the following: 1. LA InterWeb must enable ssh on your account Fill our our SSH Request form here. An LA InterWeb representative will then enable the SSH icon in your account control panel so you can continue with the rest of the steps. 2. Acquire client side software Here are some companies we recommend who sell client versions of SSH. 1) The most stable is SecureCRT. They have a 30 day free trial available at their web site. SecureCRT is at http://www.vandyke.com/products/SecureCRT. 2) A stable international version is available at Datafellows http://www.datafellows.com/download-purchase and 3) PuTTY is a free telnet client for that supports SSH1. It runs on the Windows operating systems (95, 98, 2000). 4) Terra Term SSH Telnet is a free internationally version 5) If you are trying to use a MAC to gain SSH access we offer you these links to find SSH software for a MAC: http://www.macssh.com or http://www.openssh.com/windows.html or just do a search in Yahoo! (or any search engine) on ssh software. 3. Follow the SSH client side software instructions to generate an RSA key See below for instructions using the different SSH software packages. 4. Install the key in the SSH section of your Control Panel (Just open the file that has your key in Notepad (not a word processing software) and copy/paste it to the SSH section of your Control Panel where it asks for your key. 5. In the Control Panel it will ask you the following question after you install your key Your SSH public key has been placed on the server. Before you log into your domain using SSH, please setup your access addresses. You should put in the address that you will be coming from (ie your isp) but use a * in front of the name. ie *.earthlink.net. That is to ensure that you are the person trying to Telnet to our system and not an intruder. If you do not know your isp's address, then just follow the instructions below and put the ip address that you are connecting to the net with. Note: If you do not know what the address is that you are using to connect to the Internet and you are using Windows, you can choose 'start' 'run' 'winipcfg'. This will tell you what IP address you are using. Just use that ip address in the Control Panel under SSH where it asks what address you will be coming from. If you use a modem to connect to the Net, your IP address will be different every time you connect. Therefore, you may need to go back into SSH in your Control Panel and just hit enter when it shows you RSA key to keep that the same, then on the next screen you will be asked for the address and just replace it with the ip address that you are using to access the internet at that time. If you are using a cable modem or another dedicated line to the internet, then the ip address that you are connecting to the internet will not change. It will only change if you are dialing into the net since you are dynamically assigned a new ip address each time you connect with a dial up connection. --------------------------------------------------------- Secure CRT Instructions If you are using a PC and wish to use SecureCRT from www.vandyke.com here are some brief instructions on how to set a secure connection: Once in the software click on File/Connect and then click on the button for "New Session", these are the settings. Name: Whatever you want Protocol: SSH Hostname: yourdomain.com (or your ip address) Port: 22 Username: your username on your account on our server Cipher: 3DES Authentication: RSA Then click on Advanced/Create Identity File Passphrase: This is a phrase that you choose Comment: This is a comment that will come up to give you a clue as to what your password (passphrase) is when accessing your account in SSH. RSA Key Length in Bits: 1024 (leave default) Then move your mousearound so that a key will be generated automatically. When finished it will ask where to store the key. Put it somewhere on your C: drive. Your session is now setup and your key is now stored on your c: drive in the directory you specified. The key file has a .pub extension and should be opened in notepad only (not word or another word processing software). Copy the ENTIRE key in that file and paste it into your control panel under the SSH section where it asks for your key. PuTTY Instructions
Note: PuTTY.exe does not handle the generation of RSA keys. In order to generate the RSA key, you need to use puTTYgen.exe. You can download puTTYgen.exe from "Putty website" . For further documentation on PuTTY please see the resources on their home page. Terra Term SSH Instructions
Troubleshooting Error Messages Top When I try to access the website through SSH, I'm getting the following Error message: "Sorry! You are not allowded to connect". Why? This error message occurs when the IP address that is configured in the SSH manager section is not correct. Please add your Static IP address once again the SSH amnager section in the Control Panel. If you do not have the static IP address you can add your ISP's domain name. For example, if "Earthlink.net" is your ISP you need add '*.earthlink.net" in the text box provided to configure the IP address in the SSh manager window in the Control Panel. |
|
| Copyright © 2003 LA InterWeb. LA InterWeb, the LA InterWeb logo, and related marks are property of LA InterWeb. All other marks are the property of their respective owners. All rights reserved. Acceptable Use Policy. Privacy Statement. |