sshd starts upon reboot even though disabled in WHM Service Manager

ryodo

Member
Oct 3, 2012
11
1
3
cPanel Access Level
Website Owner
Hi All -

This is new, at least since our previous PCI scan 3 months ago. The scan showed sshd was listening on port 22, even though I've unchecked it in the WHM Service Manager. Checking sshd, restarting services, then unchecking it and restarting services again turned it off. However, when I rebooted, there it was again, listening on port 22. I double-checked Service Manager and it is still unchecked.

I'd rather not go under the hood and do something like remove it from the runlevel 3 directory. Is there a clean, WHM-friendly way to fix this?
 

quizknows

Well-Known Member
Oct 20, 2009
1,008
87
78
cPanel Access Level
DataCenter Provider
Firewall off port 22 from untrusted IP's? SSHD should not cause you to fail PCI scans. I advise against disabling it unless you have a hardware KVM to use for a console in case of issues.
 

cPanelMichael

Administrator
Staff member
Apr 11, 2011
47,880
2,258
463

ryodo

Member
Oct 3, 2012
11
1
3
cPanel Access Level
Website Owner
Thank you all for your suggestions. I've simply been turning off SSH as the easiest way to plug the hole, but we do use CSF and SSH login is set to require keys, so I'll take your suggestions to close port 22 and leave SSH enabled on a distant port.