Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Chris_Newman
Participant
Jump to solution

Is there a way to limit concurrent SSH sessions to a security gateway or management server to 5 or less?

I'm going through a PCI hardening document and they recommend "only five concurrent SSH sessions when connecting to the system".

0 Kudos
1 Solution

Accepted Solutions
Vladimir
Champion
Champion

I remember encountering same issue and dealing with it by means of QoS:

1. Enable QoS on the gateway

2. Create a rule on top of default QoS rule

3. Specify ssh as service and define destinations as your gateways or management servers BEHIND gateways

4. Right-click "Action" field of the rule and click "Edit Settings"

5. Click "Advanced"

6. Change setting as per this screenshot:

QoS-Advanced

7. Add tracking options to the rule and apply the policy:

QoS-ssh-policy

Cheers,

Vladimir

View solution in original post

1 Reply
Vladimir
Champion
Champion

I remember encountering same issue and dealing with it by means of QoS:

1. Enable QoS on the gateway

2. Create a rule on top of default QoS rule

3. Specify ssh as service and define destinations as your gateways or management servers BEHIND gateways

4. Right-click "Action" field of the rule and click "Edit Settings"

5. Click "Advanced"

6. Change setting as per this screenshot:

QoS-Advanced

7. Add tracking options to the rule and apply the policy:

QoS-ssh-policy

Cheers,

Vladimir

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events