@iris_meredith Make sure all the alternative authentication stuff (kerberos, pam, etc) is disabled in your sshd config. That's where all the preauth rce exploits have historically happened.