Enabling Pushover Notifications on Successful SSH Logins — Jonah

If you run servers for public services, like I do with privacytools.io, you definitely want to monitor them for any successful logins to user accounts (via SSH, et cetera). The way I plan to accomplish this is to setup an automatic notification to the Pushover app on my phone in the event of any login. I'm going to implement this as part of PAM authentication, and configure it to fail any logins if the notification script fails for whatever reason.


This is a companion discussion topic for the original entry at https://write.privacytools.io/jonah/enabling-pushover-notifications-on-successful-ssh-logins

Maybe not super privacy-related, but a neat security solution if you need to monitor SSH logins to some box:

https://write.privacytools.io/jonah/enabling-pushover-notifications-on-successful-ssh-logins

This sends me notifications as soon as anyone logs in to any server I manage. The reason I created this solution was because I need to grant access to the privacytools.io servers to a few choice people, either for maintenance when I’m away or other reasons. But I’m also not a trusting person, so I want to make sure these people don’t get their SSH keys stolen or whatever and let some attacker wreak havoc. Or just generally I don’t want a matrix.org situation to happen to us!

4 Likes

Awesome, thank you for sharing, was looking for this the other day.
I’m getting ridiculous amounts of brute force attempts on my most popular server.
fail2ban is working on overdrive.
It’s secured like fort knox but it still makes me nervous.
The other servers I run I don’t really care about, but this one I’m running a pretty well known public service on.

1 Like

Hopefully you don’t have password auth enabled :stuck_out_tongue:

1 Like

lol! :stuck_out_tongue:

keypair + rate limiting + fail2ban + ip whitelisting + no root login + log audits and now the tool you shared!
and I’m STILL nervous haha.

3 Likes

have you run: https://github.com/arthepsy/ssh-audit ?

another fun one :slight_smile:

2 Likes

Nice, this is gonna be good!

Oh wow, I’m definitely installing that SSH tarpit when I get home haha!