Gentoo Archives: gentoo-server

From: xyon <xyon@×××××××××××.com>
To: gentoo-server@l.g.o
Subject: Re: [gentoo-server] Locking out SSH brute-force attacks
Date: Sat, 08 Oct 2005 04:56:18
Message-Id: ME-1EO6jW-0006DD-Eg@indigorobot.com
In Reply to: Re: [gentoo-server] Locking out SSH brute-force attacks by Luke-Jr
1 I'd have to agree. I've used iptables to filter through an extensive ban
2 list and the network almost became unresponsive.
3
4 On Sat, 2005-10-08 at 04:23 +0000, Luke-Jr wrote:
5 > On Thursday 06 October 2005 00:15, Mark Rudholm wrote:
6 > > route add bad.person.or.network 127.0.0.1 (or otherwise bogus destination)
7 > > is an effective emergency block.
8 >
9 > Just a small note: I've found that using iptables to drop the packets affects
10 > latency quite a bit ;)
11
12
13 --
14 gentoo-server@g.o mailing list