limiting brute force attacks

Karol Kwiatkowski freebsd at orchid.homeunix.org
Tue Feb 28 07:39:30 PST 2006


Michael P. Soulier wrote:
> Hey people,
> 
> I've seen some efforts from the netfilter community on Linux to provide a
> means to limit brute-force attacks via firewall rules. Can anyone suggest a
> way to do the same on FreeBSD? 
> 
> I'm primarily interested in limiting attacks on sshd. I already use RSA auth,
> but I like defense-in-depth. 

Hi Michael,

you can use pf firewall (probably others, too) to limit/refuse
incoming connections. Have a look at Niki Denev's post @stable:

http://lists.freebsd.org/pipermail/freebsd-stable/2006-February/022616.html

Regards,

Karol

-- 
Karol Kwiatkowski  <freebsd at orchid dot homeunix dot org>
GPGKey: http://www.orchid.homeunix.org/carlos/gpg/0x06E09309.asc

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 252 bytes
Desc: OpenPGP digital signature
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20060228/54bc2fda/signature.bin


More information about the freebsd-questions mailing list