/etc/hosts.deniedssh

Ed Jobs oloringr at gmail.com
Tue Jan 19 00:21:10 UTC 2010


On Tuesday 19 January 2010 00:39, David Southwell wrote:
> Examples from hosts.deniedssh
> I seem to be on the receiving end of a concerted series of unsuccessful
>  break in attacks on one of our systems. One small part of the attack 
has 
>  resulted in over 2000 entries in our hosts.deniedssh file in less than 1
>  hour.
> 
> I would be interested in any comments on the small example shown 
below and
>  any advice.
> 
> Thanks in advance
> 
> David
<snip>

2k entries are too much indeed. are you running ssh on port 22?
if yes, (and your users are ok with it) you can change it to another port.
or maybe, temporary disable ssh login and use cron to enable it again in 
some time in the future.

-- 
Save the whales.  Club a seal instead.
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 198 bytes
Desc: This is a digitally signed message part.
Url : http://lists.freebsd.org/pipermail/freebsd-questions/attachments/20100119/2a63a63c/attachment.pgp


More information about the freebsd-questions mailing list