Re: Limit the number of erroneous logins of root from the same IP



unruh <unruh@xxxxxxxxxx> wrote:
Anyway, you could use /etc/hosts.allow
eg
sshd:111.222.333.444 222.333.444.111 ....:deny
to deny any ssh login from those IP addresses (Note you MUST make sure

What happens when you try to connect from one of those addresses?
Does it come back quickly as "connection refused", or timeout as if the
server didn't exist?

The iptables looks the same trying to connect to my server as it does
trying to connect to a non-existent server, which I think is handy.

if /etc/hosts.allow works at the same level of obscurity, it does look
easier to administer, and I might switch to that.

--
Clarence A Dold - Hidden Valley Lake, CA, USA GPS: 38.8,-122.5
.



Relevant Pages

  • Re: Printing Problems (2nd request)
    ... lpstat: Unable to connect to server: Connection refused ... # Encryption: whether or not to use encryption; ... got two printers connected, both of which used to work fine. ... Deny From All ...
    (Fedora)
  • apache2: includes filter error
    ... # Based upon the NCSA server configuration files originally by Rob McCool. ... # configuration directives that give the server its instructions. ... Deny from all ... AddCharset ISO-8859-1 .iso8859-1 .latin1 ...
    (Debian-User)
  • Re: I will show you mine if ...
    ... As I do have servers on the net, things are configured as a DMZ ... Since the bridge filter is not addressable, it can only deny ... DMZMAIL=IP address of the mail server ... Port definitions, as a range lowport-highport ...
    (comp.os.linux.security)
  • BUG IN APACHE HTTPD SERVER (current version 2.0.47)
    ... How to return files in a Apache Deny All directory. ... Apache Web Server allows manage configurations via the main ... the configuration comparing between two config ...
    (Bugtraq)
  • Re: Restrict incoming smtp by IP address
    ... MVP - Exchange ... If you are using a Third Party Filtering service you will need to lock ... down your Exchange Server to allow only connections from their filtering ... How to I say deny all with the deny button. ...
    (microsoft.public.exchange.admin)