auto-blackholing/blacklisting on multiple hacking attempts

Lyndon Nerenberg lyndon at orthanc.ca
Mon May 26 02:54:24 UTC 2008


>
> I'd like it to be so that if an IP tries to connect to sshd more than
> once in a 30 second period, that they are immediately blackholed.
> Should I be using pf for this or would it be done better in some other
> utility?

/usr/ports/security/bruteforceblocker.



More information about the freebsd-pf mailing list