User loginNavigationNew forum topicsPollSearchRecent blog posts |
Stopping script-kiddies using iptablesRecently this server has become the victim of some very amateurish script kiddies, doing brute force common user/dictionary attacks. Here's a couple ideas for stopping the noise. Using iptables:
The first line basically says "add this source IP to a 'recent' list", so it builds a dynamic list of IP addresses hitting port 22. The second line says if four of those IP's in the 'recent' list hit port 22 within 120 seconds, dump any subsequent packets from this IP. |
Recent comments
23 weeks 6 days ago
27 weeks 3 days ago
27 weeks 4 days ago
51 weeks 3 days ago
51 weeks 3 days ago
1 year 1 week ago
1 year 11 weeks ago
1 year 11 weeks ago
1 year 14 weeks ago
1 year 15 weeks ago