From mboxrd@z Thu Jan 1 00:00:00 1970 Received: from pigeon.gentoo.org ([208.92.234.80] helo=lists.gentoo.org) by finch.gentoo.org with esmtp (Exim 4.60) (envelope-from ) id 1RKiyS-00052K-O5 for garchives@archives.gentoo.org; Mon, 31 Oct 2011 03:55:48 +0000 Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id 7E91721C035 for ; Mon, 31 Oct 2011 03:55:48 +0000 (UTC) Received: from istari.subastral.com (maxiez.com [207.99.117.18] (may be forged)) by robin.gentoo.org (8.13.5/8.13.5) with ESMTP id j92LBP74024244 for ; Sun, 2 Oct 2005 21:11:26 GMT Received: from maxiez.com (maxiez.natnet.com [66.115.179.14]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by istari.subastral.com (Postfix) with ESMTP id AD72283BC for ; Sun, 2 Oct 2005 17:20:08 -0400 (EDT) Received: by maxiez.com (sSMTP sendmail emulation); Sun, 2 Oct 2005 17:19:24 -0400 Date: Sun, 2 Oct 2005 17:19:24 -0400 From: MaxieZ To: gentoo-security@lists.gentoo.org Subject: Re: [gentoo-security] [OT?] automatically firewalling off IPs Message-ID: <20051002211923.GA3186@maxiez.national-net.com> References: <43404CB8.3@lunatic.net.nz> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-security@gentoo.org Reply-to: gentoo-security@lists.gentoo.org Mime-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha1; protocol="application/pgp-signature"; boundary="KsGdsel6WgEHnImy" Content-Disposition: inline In-Reply-To: <43404CB8.3@lunatic.net.nz> User-Agent: Mutt/1.4.2.1i X-Archives-Salt: d0cf7c62-3868-4e10-9276-10c9a6b67a38 X-Archives-Hash: 02cd097fa5d7777fdbc452cb0cbd9460 --KsGdsel6WgEHnImy Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On Mon, Oct 03, 2005 at 10:10:16AM +1300, Jeremy Brake wrote: > Hey all, >=20 > I'm looking for an app/script which can monitor for failed ssh logins,=20 > and block using IPTables for $time after $number of failed logins (an=20 > exclusion list would be handy as well) so that I can put a quick stop to= =20 > these niggly brute-force ssh "attacks" I seem to be getting more and=20 > more often. http://kodu.neti.ee/~risto/sec/ or change ports --=20 MaxieZ maxiez@maxiez.com When more and more people are thrown out of work, unemployment results. -- Calvin Coolidge --KsGdsel6WgEHnImy Content-Type: application/pgp-signature Content-Disposition: inline -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.1-cvs (GNU/Linux) iD8DBQFDQE7bVaw6z0nsVvIRAtqsAJ4rgONWsEE4UqRFtQodeiyDJL/zEACgpT84 t9siL7zzq2a6Iy8VuV/8a2k= =oAoX -----END PGP SIGNATURE----- --KsGdsel6WgEHnImy-- -- gentoo-security@gentoo.org mailing list