Trying to understand dynamic rules

Francisco Reyes lists at natserv.com
Sun Jul 17 23:12:24 GMT 2005


Learning about dynamic rules today.
In particular I would like to know if there is a way to filter out 
connections based on repeated connections...

Basically I keep track of attempts to connect to the SSH port. Any IP that 
tries to connect using a non existing user numerous times I run a script 
and blackhole the IP.

What I would like was if IPFW would see numerous attempts to connect to 
SSH from the same IP and automatically create a rule to not allow that IP 
to connect at all to my machine. Is this possible?



More information about the freebsd-ipfw mailing list