On Tue, May 16, 2006 1:17 am, Kian Mohageri wrote:
>>
>> There is a nice and easy way to blocking ssh brute-force attempts with
>> pf
>> only:
>>
>>   http://legonet.org/~griffin/openbsd/block_ssh_bruteforce.html
>
>
>
> Exactly.  This is a much cleaner solution than portknocking to stop brute
> force attacks.  I recently implemented this on a few of my servers.

You have to be aware that this otoh might open you to DoS attacks.  People
spoofing connections from your address will lock you out from your own
server.

-- 
/"\  Best regards,                      | [EMAIL PROTECTED]
\ /  Max Laier                          | ICQ #67774661
 X   http://pf4freebsd.love2party.net/  | [EMAIL PROTECTED]
/ \  ASCII Ribbon Campaign              | Against HTML Mail and News

_______________________________________________
[email protected] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-pf
To unsubscribe, send any mail to "[EMAIL PROTECTED]"

Reply via email to