Auto blacklist ssh connections ...

andrew clarke mail at
Thu Sep 18 10:22:10 UTC 2008

On Wed 2008-09-17 19:36:02 UTC-0400, Tom Marchand (m0rchand at wrote:

>> Does anyone know of a utility that I can use with sshd to auto-block  
>> by IP if there are more then N failed attempts in a row?

> Why don't you have sshd listen on a different port?

I imagine that on some hosts where there are multiple users/customers,
moving sshd to another port isn't a practical solution due to people's
habits in trying to connect to the default port.  A human problem
rather than a technical one.

PS. Top posting is cruel.

