Skip to Content
SSH, The Secure Shell: The Definitive Guide, 2nd Edition
book

SSH, The Secure Shell: The Definitive Guide, 2nd Edition

by Daniel J. Barrett, Richard E. Silverman, Robert G. Byrnes
May 2025
Beginner to intermediate
670 pages
12h 30m
Korean
O'Reilly Media, Inc.
Content preview from SSH, The Secure Shell: The Definitive Guide, 2nd Edition

클라이언트 구성

대부분의 SSH 보안은 서버와 관련이 있지만, SSH 클라이언트에도 보안 관련 설정이 있습니다. 다음은 몇 가지 팁입니다:

  • SSH 클라이언트가 실행 중인 컴퓨터를 떠날 때는 비밀번호로 보호되는 화면 잠금 장치로 컴퓨터의 디스플레이를 잠그세요. 이는 침입자가 비밀번호 없이 원격 계정에 액세스할 수 있도록 허용하는 에이전트를 실행하는 경우 특히 중요합니다.

  • 클라이언트 설정 파일에서 몇 가지 안전 기능을 필수 값으로 설정합니다:

        # OpenSSH
        # Put at the top of your configuration file
        Host *
          GatewayPorts no
          StrictHostKeyChecking ask
         ForwardX11Trusted no
    
        # Tectia
        # Put at the bottom of your configuration file
        *:
         GatewayPorts no
         StrictHostKeyChecking ask
         TrustX11Applications no

    GatewayPorts 값은 원격 클라이언트가 로컬로 전달된 포트에 연결하는 것을 금지합니다. 마지막으로 StrictHostKeyChecking 값은 맹목적으로 연결하는 대신 변경된 호스트 키에 대해 경고하고 수행할 작업을 묻습니다. X11 포워딩의 경우 이미 유효한 신뢰를 상속하는 대신 신뢰할 수 없는 새로운 xauth 키를 생성하기로 선택합니다. [9.4.5.3]

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.

Read now

Unlock full access

More than 5,000 organizations count on O’Reilly

AirBnbBlueOriginElectronic ArtsHomeDepotNasdaqRakutenTata Consultancy Services

QuotationMarkO’Reilly covers everything we've got, with content to help us build a world-class technology community, upgrade the capabilities and competencies of our teams, and improve overall team performance as well as their engagement.
Julian F.
Head of Cybersecurity
QuotationMarkI wanted to learn C and C++, but it didn't click for me until I picked up an O'Reilly book. When I went on the O’Reilly platform, I was astonished to find all the books there, plus live events and sandboxes so you could play around with the technology.
Addison B.
Field Engineer
QuotationMarkI’ve been on the O’Reilly platform for more than eight years. I use a couple of learning platforms, but I'm on O'Reilly more than anybody else. When you're there, you start learning. I'm never disappointed.
Amir M.
Data Platform Tech Lead
QuotationMarkI'm always learning. So when I got on to O'Reilly, I was like a kid in a candy store. There are playlists. There are answers. There's on-demand training. It's worth its weight in gold, in terms of what it allows me to do.
Mark W.
Embedded Software Engineer

You might also like

SSH, The Secure Shell: The Definitive Guide, 2nd Edition

SSH, The Secure Shell: The Definitive Guide, 2nd Edition

Daniel J. Barrett, Richard E. Silverman, Robert G. Byrnes
Working with SSH

Working with SSH

ACI Learning, Don Pezet

Publisher Resources

ISBN: 9798341656383