Jump to content

Deny external access for accounts without password


Dibbes

Recommended Posts

Dibbes

Not sure if this was asked before, but I couldn't find it. 

 

Lately there have been some reports of servers being accessed without the owners permission and honestly I'm not all that surprised to see these things happen. So once in a while I've see logs posted, complete with external links and when clicking on these external links, you get immediately into a server with a privileged account, no password asked/needed. (Not saying that the people who reported the illegitimate access of their servers have unprotected admin accounts)

 

For security purposes, can account without password be automatically denied access from an external source?

 

To put it a little further, I'd say make external access optional for any account and has to be specifically granted on the users page and/or give the choice an account can be hidden from an external source only accessible by logging in, but visible (and selectable) from the internal network.

  • Like 5
Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...