OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: avoid logging useless ssh brute force attempts

From: Peter N. M. Hansteen (peterbsdly.net)
Date: Fri Feb 01 2008 - 06:09:00 CST


Dennis Davis <D.H.Davisbath.ac.uk> writes:

> /usr/ports/sysutils/expiretable
>
> for an easy way to set this up, either as a daemon process or run out
> of cron.

recent versions of pfctl has expire functionality built in, but
expiretable still works too

--
Peter N. M. Hansteen, member of the first RFC 1149 implementation team
http://bsdly.blogspot.com/ http://www.bsdly.net/ http://www.nuug.no/
"Remember to set the evil bit on all malicious network traffic"
delilah spamd[29949]: 85.152.224.147: disconnected after 42673 seconds.