Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 23 May 2005 22:36:00 -0400 (EDT)
From:      Francisco Reyes <lists@natserv.com>
To:        fbsd_user <fbsd_user@a1poweruser.com>
Cc:        freebsd-questions@freebsd.org
Subject:   RE: securing SSH, FBSD systems
Message-ID:  <20050523223025.O46920@zoraida.natserv.net>
In-Reply-To: <MIEPLLIBMLEEABPDBIEGEEIFHFAA.fbsd_user@a1poweruser.com>
References:  <MIEPLLIBMLEEABPDBIEGEEIFHFAA.fbsd_user@a1poweruser.com>

next in thread | previous in thread | raw e-mail | index | archive | help
On Mon, 23 May 2005, fbsd_user wrote:

> These manual routes are stored in memory.
> Can you tell how much memory is used by your 300+ list?

I don't know, but it probably is comparable to what it would take to 
put them in the firewall rules.

> Is there some command to display these user added route list?

netstat -nr|grep 127

> Is the <hacker ip> a single IP address or can you say 62.0.0.0/8?

The way I use  it is a single IP, but a quick read of the man page it 
seems you can also indicate blocks. Man route and search for the phrase 
"For example"

Also see my other poston this thread. In particular the URL to the small 
scripts I use. They could use lots of improvement, but they may be a good 
start for someone interested in automating the process.

I believe there are also programs which can monitor the logs and 
automatically perform actions, but those are likely harder to learn and 
setup.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20050523223025.O46920>