From: | Mick <michaelkintzios@×××××.com> |
---|---|
To: | gentoo-user@l.g.o |
Subject: | [gentoo-user] Break In attempts |
Date: | Sun, 07 Oct 2007 09:59:19 |
Message-Id: | 200710071040.23437.michaelkintzios@gmail.com |
1 | Hi All, |
2 | |
3 | Can you please advise what I could do to block IP addresses that have |
4 | repeatedly failed to log in? I am looking here at a server which over the |
5 | last week is being attacked daily with random usernames. So the only |
6 | constant in these repeated attempts is not the username, but the IP address. |
7 | Occasionally, the odd service name (e.g. rpc, mysql, postgres, etc.) repeats |
8 | itself, otherwise they seem to be randomly selected from a dictionary. |
9 | |
10 | I have already disabled PAM authentication on sshd so that only users with a |
11 | public key in their ~/.ssh can login. |
12 | -- |
13 | Regards, |
14 | Mick |
File name | MIME type |
---|---|
signature.asc | application/pgp-signature |
Subject | Author |
---|---|
Re: [gentoo-user] Break In attempts | Elias Probst <mail@×××××××××××.eu> |
RE: [gentoo-user] Break In attempts | Joost van Surksum <mailings@××××××××××.nl> |
Re: [gentoo-user] Break In attempts | Bertram Scharpf <lists@×××××××××××××××.de> |
[gentoo-user] Re: Break In attempts | Remy Blank <remy.blank@×××××.com> |
Re: [gentoo-user] Break In attempts | Randy Barlow <randy@×××××××××××××××××.com> |