User loginNavigationNew forum topicsPollSearchRecent blog posts |
Stopping script-kiddies using iptablesRecently this server has become the victim of some very amateurish script kiddies, doing brute force common user/dictionary attacks. Here's a couple ideas for stopping the noise. Using iptables:
The first line basically says "add this source IP to a 'recent' list", so it builds a dynamic list of IP addresses hitting port 22. The second line says if four of those IP's in the 'recent' list hit port 22 within 120 seconds, dump any subsequent packets from this IP. |
Recent comments
8 weeks 16 hours ago
9 weeks 3 days ago
10 weeks 6 days ago
22 weeks 1 day ago
1 year 9 weeks ago
1 year 9 weeks ago
1 year 9 weeks ago
1 year 34 weeks ago
1 year 35 weeks ago
1 year 35 weeks ago