svn commit: r301226 - in head: etc etc/defaults etc/periodic/security etc/rc.d lib lib/libblacklist libexec libexec/blacklistd-helper share/mk tools/build/mk usr.sbin usr.sbin/blacklistctl usr.sbin...

Andrey Chernov ache at freebsd.org
Mon Jun 6 19:26:11 UTC 2016


On 06.06.2016 20:52, Slawa Olhovchenkov wrote:
>> BTW, it is good idea: to check first, is supported firewall enabled, and
>> only then enable blacklistd by default.
> 
> What purpose? SUDDENLY lockout access to own host after some mistake
> in password?

I agree that default 1 day locking is too restricting. I prefer floating
scale of fail2ban which have several 15min locks (which is not big
lockout for yourself) before one big lock after them, but currently
blacklistd can't do that.



More information about the svn-src-head mailing list