Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 05 May 2015 13:05:24 -0500
From:      Mark Felder <feld@FreeBSD.org>
To:        freebsd-questions@freebsd.org
Subject:   security/sshguard 1.6.0
Message-ID:  <1430849124.506511.263056953.227E1E7E@webmail.messagingengine.com>

next in thread | raw e-mail | index | archive | help
Hi all,

I recently updated sshguard to 1.6.0. In the changelog it mentions
improved detection for SSH connections:

- - Match SSH login failures with "via" suffix
- - Update SSH "Bad protocol" signature

This seems to detect when a machine connects to port 22 but doesn't try
to login. This is what you might expect your monitoring server to do. As
a result, your monitoring server will likely end up on the sshguard ban
list like mine did. Make sure your monitoring server is whitelisted in
the firewall or that you're using the whitelist functionality that
sshguard provides. :-)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?1430849124.506511.263056953.227E1E7E>