promt solution with max-src-conn-rate

Kian Mohageri kian.mohageri at gmail.com
Mon May 15 23:17:52 UTC 2006


>
> There is a nice and easy way to blocking ssh brute-force attempts with pf
> only:
>
>   http://legonet.org/~griffin/openbsd/block_ssh_bruteforce.html



Exactly.  This is a much cleaner solution than portknocking to stop brute
force attacks.  I recently implemented this on a few of my servers.


More information about the freebsd-pf mailing list