Greetings and happy New Year!

I run a script that updates my two firewalls when a host tries to log in to 
many times.

It should be possible to use a similar script to check for the host name and 
user name and un-deny them after the fact.  The user name should be grep-able 
from /var/log/some-file-depending-on-your-flavor-of-linux.

You would want to put some security on it so you don't create a security hole, 
however.  Like limit the number of attempts to 10 in an hour or send an email 
to yourself when it happens.

My $0.02.


Michael Weber
Network Administrator
 
Allied National, Inc.
4551 W . 107th St.
Suite 100
Overland Park, KS 66207

913-945-4313 is my direct number


>>> Phil Schwartz <phil_schwa...@users.sourceforge.net> 12/29/2010 10:43 AM >>>

No, you can only whitelist by host address (eg. 192.168.1.4). 
Alternatively, you can have them set up ssh keys so they wouldn't need to 
provide a password when connecting.

Regards,

Phil

On Tue, 28 Dec 2010, Mehmet Akcin wrote:

> hi there
>
> is it possible to make denyhosts not to block certain usernames from any host?
>
> i am trying to stop annoying some colleagues of mine who don't like denyhosts 
> because they can't remember the password and get blocked when they try few 
> different
>
> regards
>
> mehmet
> ------------------------------------------------------------------------------
> Learn how Oracle Real Application Clusters (RAC) One Node allows customers
> to consolidate database storage, standardize their database environment, and,
> should the need arise, upgrade to a full multi-node Oracle RAC database
> without downtime or disruption
> http://p.sf.net/sfu/oracle-sfdevnl 
> _______________________________________________
> Denyhosts-user mailing list
> Denyhosts-user@lists.sourceforge.net 
> https://lists.sourceforge.net/lists/listinfo/denyhosts-user 
>

------------------------------------------------------------------------------
Learn how Oracle Real Application Clusters (RAC) One Node allows customers
to consolidate database storage, standardize their database environment, and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl 
_______________________________________________
Denyhosts-user mailing list
Denyhosts-user@lists.sourceforge.net 
https://lists.sourceforge.net/lists/listinfo/denyhosts-user

E-MAIL CONFIDENTIALITY NOTICE: This communication and any associated
file(s) may contain privileged, confidential or proprietary information
or be protected from disclosure under law ("Confidential Information").
Any use or disclosure of this Confidential Information, or taking any
action in reliance thereon, by any individual/entity other than the
intended recipient(s) is strictly prohibited.  This Confidential
Information is intended solely for the use of the
individual(s) addressed. If you are not an intended recipient, you have
received this Confidential Information in error and have an obligation
to promptly inform the sender and permanently destroy, in its entirety,
this Confidential Information (and all copies thereof).  E-mail is
handled in the strictest of confidence by Allied National, however,
unless sent encrypted, it is not a secure communication method and may
have been intercepted, edited or altered during transmission and
therefore is not guaranteed.


------------------------------------------------------------------------------
Learn how Oracle Real Application Clusters (RAC) One Node allows customers
to consolidate database storage, standardize their database environment, and, 
should the need arise, upgrade to a full multi-node Oracle RAC database 
without downtime or disruption
http://p.sf.net/sfu/oracle-sfdevnl
_______________________________________________
Denyhosts-user mailing list
Denyhosts-user@lists.sourceforge.net
https://lists.sourceforge.net/lists/listinfo/denyhosts-user

Reply via email to