Re: SSHD: Limit login attempt rate



On 2008-07-24, bmearns <mearns.b@xxxxxxxxx> wrote:


I'm running an sshd on Fedora 8, and have recently been getting
swamped with people trying to log in (i.e., break in). It's configured
to only allow three authentication attempts per connection, but they
just keep reconnecting: probably some script kiddies with port
sniffers and password testers. Is there a way to configure it so that
there's a timeout after failed attempts? For example, if a particular
address tries and fails three times to authenticate, that address is
blocked for three hours, or something similar?

fail2ban
.



Relevant Pages

  • SSHD: Limit login attempt rate
    ... I'm running an sshd on Fedora 8, ... to only allow three authentication attempts per connection, ... address tries and fails three times to authenticate, ...
    (comp.os.linux.networking)
  • RE: SSH with OpenSSH and Putty - Please Help!
    ... It looks like your config file doesn't state exactly which file needs to be ... you may need to truss sshd or run sshd in debug foreground mode ... Then test and see if your key-based authentication works. ... Event Log: No supported authentications offered. ...
    (SSH)
  • Re: OpenSSH and pam_krb5
    ... > with GSSAPI and PAM authentication. ... this data is present in a separate process (the "authentication ... application (ie sshd). ...
    (SSH)
  • Re: openssh / cygwin : public key authentication
    ... The sshd is launch by user "a" which exist in W2000 and the association is ... When I use public key authentication from a remote host to this one as ... The system account does of course own that user rights by default. ... RSA authentication anyway. ...
    (comp.security.ssh)
  • Re: openssh / cygwin : public key authentication
    ... The sshd is launch by user "a" which exist in W2000 and the association is ... When I use public key authentication from a remote host to this one as ... The system account does of course own that user rights by default. ... RSA authentication anyway. ...
    (comp.security.ssh)