Thus said Corey Edwards on Fri, 12 Apr 2013 10:08:06 -0600:

> The primary advantage  fail2ban would have over  your iptables filters
> is being able to differentiate successful and failed logins.

If one can't be bothered to use SSH keys, or get one's password right in
10 times per minute (assuming I interpret the iptables rules correctly),
one deserves to be blocked. ;-)

Andy
-- 
TAI64 timestamp: 4000000051699fa9



/*
PLUG: http://plug.org, #utah on irc.freenode.net
Unsubscribe: http://plug.org/mailman/options/plug
Don't fear the penguin.
*/

Reply via email to