Re: SSH and iptables
- From: Josef Puerstinger <puerst_web@xxxxxxxxxx>
- Date: Thu, 16 Mar 2006 13:48:18 +0000
Hi,
Steven Jones wrote:
When an SSH connection attempt (at the standard port) from a given IP
address fails, no further SSH connections will be accepted from that IP
address for 60 seconds.
If, on the other hand, the connection attempt succeeds, then that IP
address is free to start as many (successful) SSH connections within the
next 60 seconds (and beyond, in fact).
For this job I use the skript from http://fail2ban.sourceforge.net
With default settings it will block any traffic from an address from
which the authentification fails 3 times within 10 minutes for another
10 minutes.
HTH,
Josef
.
- References:
- SSH and iptables
- From: Steven Jones
- SSH and iptables
- Prev by Date: Re: My Linux doesn't use DNS protocol from a Windows server
- Next by Date: Re: WiFi under Linux - rant no 7
- Previous by thread: Re: SSH and iptables
- Next by thread: netcat for win2k
- Index(es):
Relevant Pages
|