Highlighted
Member
Posts: 184
Registered: ‎09-18-2012
Kudos: 92
Solutions: 3
Accepted Solution

Banner before Rejection

Testing my firewall rules from a remote server that doesn't have my RSA key I noticed that I still get the banner. I would prefer if the auth methods don't succed that nobody sees what the machine is. Knowing its an edgeos means there is a vector for scanning and enumerating edgemax units on the internet, even if key based auth is used.

 

Welcome to EdgeOS

By logging in, accessing, or using the Ubiquiti product, you
acknowledge that you have read and understood the Ubiquiti
License Agreement (available in the Web UI at, by default,
http://192.168.1.1) and agree to be bound by its terms.

Permission denied (publickey).

 


Accepted Solutions
Established Member
Posts: 1,211
Registered: ‎06-14-2012
Kudos: 1008
Solutions: 80
Contributions: 9

Re: Banner before Rejection

Delete the pre-login banner and set your preferred post-login banner.

 

ubnt@ubnt# set system login banner
post-login  pre-login
[edit]

 

View solution in original post


All Replies
Established Member
Posts: 1,211
Registered: ‎06-14-2012
Kudos: 1008
Solutions: 80
Contributions: 9

Re: Banner before Rejection

Delete the pre-login banner and set your preferred post-login banner.

 

ubnt@ubnt# set system login banner
post-login  pre-login
[edit]