Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Pls help me change SSH settings in Device Console ?

Hello everyone,

I am using Sophos XG (Home) v18.5 MR4. I would like to change my SSH listen address to only 192.168.1.1 and port xx (other than 22). According to Sophos XG's CLI guide, I should be disabling connectivity over SSH first, then re-enabling it with a certain local IP address & port, should I not?

I think the steps will be:

console> disableremote

console> enableremote port xx serverip 192.168.1.1

This will be the 1st time I have ever had to modify something on the terminal, I really want to be cautious when interacting with such fundamental stuff. Hence, I have some questions to ask:

  1. Did I get the syntax right? Pls correct me if I was wrong.

  2. Since disabling remote access at first will disconnect all the active SSH sessions, I should not be doing this while on Putty, but rather having to execute these commands via the admin page's Console, should I ?

Thank you very much in advance.



This thread was automatically locked due to age.
  • Does it actually help? 

    It will increase the time of finding the port. 

    SSH availability is still something, which is present, no matter what port you are using. The only way to increase the security is by disabling SSH. 

    Please do not enable SSH on WAN - no matter what port. 

    Please reduce the exposed Zones for SSH. 

    Those settings increase the security. Not changing the Port. Port scanner will quickly pick up changed ports. 

    __________________________________________________________________________________________________________________

Share Feedback
×

Submitted a Tech Support Case lately from the Support Portal?