Gentoo Archives: gentoo-user

From: Alan McKinnon <alan.mckinnon@×××××.com>
To: gentoo-user@l.g.o
Subject: Re: [gentoo-user] Blocking login attempts to sshd and vsftpd
Date: Sun, 15 Nov 2009 10:17:02
Message-Id: 200911151042.27817.alan.mckinnon@gmail.com
In Reply to: Re: [gentoo-user] Blocking login attempts to sshd and vsftpd by Walter Dnes
1 On Sunday 15 November 2009 08:21:55 Walter Dnes wrote:
2 > On Sat, Nov 14, 2009 at 07:07:28PM -0500, Richard Marza wrote
3 >
4 > > Thank you for the information, I did find that denyhost and fail2ban in
5 > > threads but there were issues with it not working properly. Some users
6 > > created custom scripts to get the job done correctly.
7 >
8 > Have you considered not allowing password-based logins at all for ssh?
9 > Use RSA keys instead. It's much easier, and much more secure.
10
11 fail2ban and/or denyhosts is still very useful with key-only auth, even if
12 only to get the spam out of messages and into the iptables logs
13
14
15 --
16 alan dot mckinnon at gmail dot com

Replies

Subject Author
[gentoo-user] Re: Blocking login attempts to sshd and vsftpd doki_pen@××××××××.org