Re: I'm getting attacked



On 2007-02-14, jsuthan wrote:
I keep getting logs like these - the x is there to protect the guilty:

Jan 16 05:37:47 penguin sshd[16174]: Invalid user guest from
x.199.53.194
Jan 16 05:37:50 penguin sshd[16176]: Invalid user master from
x.199.53.194
Jan 16 05:37:53 penguin sshd[16178]: Invalid user apache from
x.199.53.194
Jan 16 05:38:15 penguin sshd[16199]: Invalid user admin from
x.199.53.194

Can someone give me advice about what I should do about it? One idea is
to move the ssh port to something besides the default. But really I'm
not sure. Please help.
give attacker some work .. example switch you default ssh port 22 to 44
or something else. Doing this attacker need to sniff out which port your
ssh assign to. You also can enable tcpd features; this library enforces
system to strict network connectivity. Checkout man page for host.allow
and host.deny. Finally something very important learn to use iptables;
prime linux security.
One more advice how to obtain security through obscurity?

--
Damian Szuberski
.



Relevant Pages

  • Re: Im getting attacked
    ... Can someone give me advice about what I should do about it? ... to move the ssh port to something besides the default. ... prime linux security. ... There's nothing more obscure that a power-down computer. ...
    (comp.os.linux.security)
  • Re: Questions on some wierd /var/log entries
    ... would like some input on what these entries are on about (yes, ... So port knocking is out as is moving my SSH port to ... I don't know the specifics about adding firewall rules using Suse's ...
    (comp.os.linux.misc)
  • Re: SSH Advice
    ... Documentation seems a little scarce so any advice, tips, links, ... but that's still a compatibility layer. ... free native SSH servers for Windows. ... Good judgement comes with experience. ...
    (comp.security.ssh)
  • Re: Im getting attacked
    ... Can someone give me advice about what I should do about it? ... Doing this attacker need to sniff out which port your ssh assign to. ... tauno voipio iki fi ...
    (comp.os.linux.security)
  • Re: SSH Advice
    ... Documentation seems a little scarce so any advice, tips, links, ... but that's still a compatibility layer. ... > free native SSH servers for Windows. ...
    (comp.security.ssh)