[aklug] Iptables: Automatic Blacklisting

From: Christopher Howard <cmhoward@frigidcode.com>
Date: Mon Dec 20 2010 - 22:53:42 AKST

As a naive iptables user, I was wondering what you guys thought of this:

http://thiemonagel.de/2006/02/preventing-brute-force-attacks-using-iptables-recent-matching/

I've been getting a lot of attacks lately of the kind described in the article: the attacker will try SSH'ing into 40 or 50 different common user names, and then a few seconds later he will try again from another host.

-- 
Christopher Howard
frigidcode.com
theologia.indicium.us
---------
To unsubscribe, send email to <aklug-request@aklug.org>
with 'unsubscribe' in the message body.
Received on Mon Dec 20 22:53:51 2010

This archive was generated by hypermail 2.1.8 : Mon Dec 20 2010 - 22:53:51 AKST