Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- From: Rob <rob@xxxxxxxxxxx>
- Date: Tue, 25 Mar 2008 10:12:11 +0100
Steve M. Fabac, Jr. wrote:
Bill Vermillion wrote:
In article <47E6160C.7080405@xxxxxxx>,
Steve M. Fabac, Jr. <smfabac@xxxxxxx> wrote:
I have a client running SCO 5.0.5 with OpenSSH 3.4p1....
installed.
Since SSH was installed, we have been getting hits from
people on the Internet scanning port 22.
Normally they give up and go away. However, I have noticed
an unusual number of scans from foreign IP addresses using
valid names on the system (the names below in the block for
a single source IP are the *only* names logged from that
IP):
Anybody have any ideas, thoughts or comments on this?
Steve,
what about using tcp_wrappers as to perform a "route delete" on the offending IP?
If memory serves, there was a porting of tcp_wrapper for SCO OS5 on a TLS076a
on the FTP site:
ftp://ftp.sco.com/pub/TLS/tls076a.tcp_wrappers.tar.Z
Hope this helps!
Ciao,
Rob
.
- Follow-Ups:
- Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- From: Nico Kadel-Garcia
- Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- References:
- OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- From: Steve M. Fabac, Jr.
- Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- From: Bill Vermillion
- Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- From: Steve M. Fabac, Jr.
- OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- Prev by Date: Re: SOLVED Re: OpenServer 5.0.7 tunioctl(0): Unknown ioctl 0x00000000
- Next by Date: Re: login prompt
- Previous by thread: Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- Next by thread: Re: OpenSSH 3.4p1 Trouble on SCO 5.0.5?
- Index(es):
Relevant Pages
|