Re: How to Stop Bruit Force ssh Attempts?





--- Chris Maness <chris@xxxxxxxxxxxxxxx> wrote:

In my auth log I see alot of bruit force attempts to
login via ssh. Is
there a way I can have the box automatically kill
any tcp/ip
connectivity to hosts that try and fail a given
number of times? Is
there a port or something that I can install to give
this kind of
protection. I'm still kind of a FreeBSD newbie.

Thanks,
Chris Maness

Hey there,
A couple of things you could try. I believe there is a
port that watches log files, utilizing that you could
create a script to add the IP to your firewall rules
then after a time remove it.

The other way is to use snort_inline and see how that
works.

Hope that helps.


__________________________________________________
Do You Yahoo!?
Tired of spam? Yahoo! Mail has the best spam protection around
http://mail.yahoo.com
_______________________________________________
freebsd-questions@xxxxxxxxxxx mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-questions
To unsubscribe, send any mail to "freebsd-questions-unsubscribe@xxxxxxxxxxx"



Relevant Pages

  • Re: How to Stop Bruit Force ssh Attempts?
    ... Is there a port or something that I can install to give ... Do You Yahoo!? ... Mail has the best spam protection around http://mail.yahoo.com ... I'm using denyhost per someone on the lists recomendation. ...
    (freebsd-questions)
  • Re: FIXED Realplayer plugin not working after portupgrade
    ... For your particular problem could you recite the steps ... this port or another) we can follow through. ... Do You Yahoo!? ... Mail has the best spam protection around ...
    (freebsd-questions)
  • Re: Nmap oprions
    ... Juan B wrote: ... >port found open. ... >Do You Yahoo!? ... Mail has the best spam protection around ...
    (Security-Basics)
  • Re: FreeBSD server behind router-NAT; how to configure sendmail?
    ... without needing to tell sendmail ... port 2525, you can use this in your .mc file: ... Do You Yahoo!? ... Mail has the best spam protection around ...
    (freebsd-questions)
  • Re: Will Goh Chok Tong succeed in his given mission?
    ... He gave all sort of fucking promises to Singaporeans to harness their ... what will happen if he fail to win it back? ... Do You Yahoo!? ... Mail has the best spam protection around ...
    (soc.culture.singapore)