1 |
El Lunes, 4 de Septiembre de 2006 21:54, Vladimir Strycek escribió: |
2 |
> Martins Steinbergs wrote: |
3 |
> >On Monday 04 September 2006 21:49, Vladimir Strycek wrote: |
4 |
> >>Peter Hoff wrote: |
5 |
> >>>----- Original Message ---- |
6 |
> >>>From: Vladimir Strycek <vladoportos@×××××××××××.sk> |
7 |
> >>>To: gentoo-amd64@l.g.o |
8 |
> >>>Sent: Monday, September 4, 2006 12:40:50 AM |
9 |
> >>>Subject: Re: [gentoo-amd64] Something like deyhosts |
10 |
> >>> |
11 |
> >>>Peter Hoff wrote: |
12 |
> >>>>----- Original Message ---- |
13 |
> >>>>From: Vladimir Strycek <vladoportos@×××××××××××.sk> |
14 |
> >>>>To: gentoo-amd64@l.g.o |
15 |
> >>>>Sent: Sunday, September 3, 2006 9:32:05 PM |
16 |
> >>>>Subject: [gentoo-amd64] Something like deyhosts |
17 |
> >>>> |
18 |
> >>>> |
19 |
> >>>>Does anybody get something like denyhosts to run ? as i looking in logs |
20 |
> >>>>there is much bruteforce tries which looks realy scary... I used |
21 |
> >>>>denyhosts on debian vhere its works right out of box... but not at |
22 |
> >>>>gentoo. I use syslog-ng as loger... |
23 |
> >>>>-- |
24 |
> >>>>gentoo-amd64@g.o mailing list |
25 |
> >>>> |
26 |
> >>>> |
27 |
> >>>>Any reason you can't just put them in /etc/hosts.deny? |
28 |
> >>>> |
29 |
> >>>>If it's not there by default, create it. |
30 |
> >>>> |
31 |
> >>>> |
32 |
> >>>>__________ NOD32 1.1737 (20060903) Information __________ |
33 |
> >>>> |
34 |
> >>>>This message was checked by NOD32 antivirus system. |
35 |
> >>>>http://www.eset.com |
36 |
> >>> |
37 |
> >>>Yes i can but when i noticed it they already done 100 tries (logins) |
38 |
> >>>denyhosts put them there after 3 wrong logins and dont let them continue |
39 |
> >>>in atack... |
40 |
> >>>-- |
41 |
> >>>gentoo-amd64@g.o mailing list |
42 |
> >>> |
43 |
> >>> |
44 |
> >>>Have you emerge denyhosts? |
45 |
> >>> |
46 |
> >>> |
47 |
> >>>__________ NOD32 1.1738 (20060904) Information __________ |
48 |
> >>> |
49 |
> >>>This message was checked by NOD32 antivirus system. |
50 |
> >>>http://www.eset.com |
51 |
> >> |
52 |
> >>Yes i did, i spend 24hours trying to get it work, without any luck... |
53 |
> > |
54 |
> >here it works OK with syslog-ng, i would say, out of the box |
55 |
> > |
56 |
> >however, you could hint on what is problem, probably some could help |
57 |
> > |
58 |
> >m |
59 |
> |
60 |
> Problem is that it block authomatickly whatever ip apear in log... |
61 |
|
62 |
That is why fail2ban exists... |
63 |
|
64 |
And it also works for other programs. |
65 |
|
66 |
Hope it helps! |
67 |
|
68 |
-- |
69 |
gentoo-amd64@g.o mailing list |