Fedora Linux Support Community & Resources Center

Go Back   FedoraForum.org > Fedora 17/18 > Security and Privacy
FedoraForum Search

Forgot Password? Join Us!

Security and Privacy Sadly, malware, spyware, hackers and privacy threats abound in today's world. Let's be paranoid and secure our penguins, and slam the doors on privacy exploits.

Reply
 
Thread Tools Search this Thread Display Modes
  #1  
Old 17th October 2005, 09:37 AM
spying Offline
Registered User
 
Join Date: Sep 2005
Posts: 12
sshd.conf

Is there a way to temporary ban/ignore an ip after a number of failed requests?
I have set the allowable tries to 2 before it disconnects the user but i also want to block brute force attacks from escalating into a DoS attack. If the option is not available, i'm pretty surprised such a option is unavailable.
Reply With Quote
  #2  
Old 17th October 2005, 09:53 AM
Zigzagcom Offline
Registered User
 
Join Date: Feb 2005
Location: CALIFORNIA, yeah
Age: 86
Posts: 1,657
There is a script called "DenyHosts", google it, or you might get it via yum as well. I've played with it, and it seems to do the job...altough I am still trying to fully understand it....
__________________
Ziggy
Reply With Quote
  #3  
Old 17th October 2005, 10:41 AM
rayyes Offline
Registered User
 
Join Date: Dec 2004
Location: Toronto, ON
Posts: 408
here's two i found on google. Haven't tried them so i cant say how well they work.
Authfail - http://www.bmk.bz/?p=60
BlockHosts - http://www.aczoom.com/cms/blockhosts/ <--- this one seems pretty good
__________________
Peace - To the Middle East.
rayyes.com
Reply With Quote
  #4  
Old 17th October 2005, 07:19 PM
spying Offline
Registered User
 
Join Date: Sep 2005
Posts: 12
Will check them out. Thanks
Reply With Quote
  #5  
Old 18th October 2005, 08:02 AM
gavinw6662 Offline
Registered User
 
Join Date: Feb 2005
Age: 34
Posts: 1,281
have you looked into portsentry?? Nice program for blocking port scans.
__________________
I read your e-mail
Reply With Quote
  #6  
Old 30th October 2005, 12:24 PM
centos_x Offline
Registered User
 
Join Date: Apr 2005
Location: italia
Posts: 157
hosts.allow and hosts.deny in /etc

One problem with this is in hosts.allow you can state All and in deny put the IP in question, problem with this is if the culprit is dynamically assigned this is not a good defense. Just a matter of person picking up new IP from his ISP and can start over again.

Other option is setting deny to All and setting allow to specific IP's and/or Ranges, Problem with this is if you access from various locations. That do not have static IP's you will run into problems gaining access.
Reply With Quote
Reply

Tags
sshdconf

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Starting sshd: /etc/init.d/sshd: line 113: /usr/sbin/sshd: Permission denied sumanc Using Fedora 9 28th March 2008 06:37 AM
resolv.conf ignores hosts file. host.conf is correct mlee07946 Servers & Networking 1 9th July 2007 06:19 PM
file type of /etc/yum.conf and yumex.profiles.conf? Zigzagcom Security and Privacy 2 25th May 2006 05:39 AM
vi /usr/local/apache2/conf/httpd.conf tidy_boy Servers & Networking 3 1st May 2006 12:09 AM


Current GMT-time: 15:24 (Wednesday, 19-06-2013)

TopSubscribe to XML RSS for all Threads in all ForumsFedoraForumDotOrg Archive
logo

All trademarks, and forum posts in this site are property of their respective owner(s).
FedoraForum.org is privately owned and is not directly sponsored by the Fedora Project or Red Hat, Inc.

Privacy Policy | Term of Use | Posting Guidelines | Archive | Contact Us | Founding Members

Powered by vBulletin® Copyright ©2000 - 2012, vBulletin Solutions, Inc.

FedoraForum is Powered by RedHat