Linux ssh, sftp port 분리 (Linux ssh, sftp port separation)

2023. 11. 6. 12:21IT System Engineer

# ssh, sftp port 분리

vi /etc/ssh/sshd_config

Port 2222
Port 2121


Subsystem      sftp    /usr/libexec/openssh/sftp-server

Match LocalPort 2121
AllowTcpForwarding no
X11Forwarding no
ForceCommand internal-sftp


getenforce

setenforce 0

systemctl enable sshd

systemctl restart sshd

setenforce 1

 

# firewall 설정


firewall-cmd --permanent --zone=public --add-port=2222/tcp
firewall-cmd --permanent --zone=public --add-port=2121/tcp

firewall-cmd --reload

sudo semanage port -a -t ssh_port_t -p tcp 2222
sudo semanage port -a -t ssh_port_t -p tcp 2121

semanage port -l | grep ssh

systemctl disable firewalld
systemctl stop firewalld