denyhosts, fail2ban, or something else?

Frank Reppin frank at undermydesk.org
Tue Nov 27 23:55:41 UTC 2012


Hi,

On 27.11.2012 23:25, Aleksandr Miroslav wrote:
[...]
> Finally got sick of seeing tons of ssh break-in attempts in my logs. Am
> considering using denyhosts, or fail2ban. Anyone have any experience
> with these?
>
> I'm already using the AllowUsers facility of ssh to only allow specific
> users in, so I'm not overly concerned about the attempts.
Not sure if letting sshd listen on a different port is an option
for your specific needs... but (at least in my experience) it
significantly cuts down those log entries since probably most of
these attempts are from bots anyways.

HTH,
Frank Reppin

-- 
43rd Law of Computing:
         Anything that can go wr
fortune: Segmentation violation -- Core dumped


More information about the freebsd-questions mailing list