Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 19 Dec 2005 13:03:29 -0800 (PST)
From:      Arne Woerner <arne_woerner@yahoo.com>
To:        freebsd-security@freebsd.org
Subject:   Re: Brute Force Detection + Advanced Firewall Policy
Message-ID:  <20051219210329.90107.qmail@web30311.mail.mud.yahoo.com>
In-Reply-To: <E1EoRWz-000Aqs-WA@host84.nimahost.net>

next in thread | previous in thread | raw e-mail | index | archive | help
--- Hadi Maleki <freebsdlist@nimahost.net> wrote:
> Any BFD/AFP softwares available for FreeBSD 4.10?
> 
> Im getting flooded with ssh and ftp attempts.
>
What about a "white list"? I mean, three rules that blocks all
incoming traffic to those ports (21, 22, the others), and then a
rule for each "good IP" that allows the connection...

Some time ago I have read in this list something about attempts to
guess a SSH username and password... Maybe u can find that thread
in the archive via the Websearch interface?

Maybe it helps to disallow password athentication, because DSA
public key authentication is much more fun for users and admins...
:-))

-Arne


__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20051219210329.90107.qmail>