Re: [Full-disclosure] reduction of brute force login attempts via SSH through iptables --hashlimit



I haven't tried this myself, and I don't know if it is already suggested,
but this should stop all the pesky scriptkiddies from filling up your logs.
Might prove to be a better solution, who knows:
http://aplawrence.com/Security/sshloginattack.html

Matthijs
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Relevant Pages

  • Re: can someone translate these log messages please?
    ... Okay, so what do you mean exactly about them filling up your logs? ... Multiple messages per second? ...
    (freebsd-questions)
  • print or die
    ... I've recently come across a problem where I am parsing some large logs, ... and end up filling up a file system. ... The process proceeds however, ...
    (comp.lang.perl.misc)
  • Re: Process taking most of Logcal Log
    ... Is there a way to tell which process on the box is filling up the ... is writing the logical logs or filling up the logical logs ... tid lkreqs lkw dl to lgrs isrd iswr isrw isdl isct isrb lx bfr bfw lsus lsmx seq ...
    (comp.databases.informix)
  • sshd doing dns queries on localhost?
    ... the capture is from lo0. ... filling my log_in_vain logs), but I'm curious about the reason; ...
    (FreeBSD-Security)
  • Re: Compression to a fit a space...
    ... > Works good for quickly filling up an uncompressed archive, ... > missing something, it doesn't really help with the actual problem. ... - What You could do, though, is to compress Your ... already compressed logs _without_ further compression. ...
    (comp.os.linux.development.apps)