[j-nsp] SSH access and not working firewall policy

2012-08-12 Thread Robert Hass
Hi I have Juniper running 10.4R7 with RE filter applied to lo.0 but I still see bruteforce attacks to my SSH in log messages. I tested policy from hosts not existing in MGMT ACL - I cannot connect to SSH, so how these attackers can connect to my SSH ? Any hints ? Maybe I also have to filter more

Re: [j-nsp] SSH access and not working firewall policy

2012-08-12 Thread George Carey
On Aug 12, 2012, at 3:07 PM, Robert Hass robh...@gmail.com wrote: Hi I have Juniper running 10.4R7 with RE filter applied to lo.0 but I still see bruteforce attacks to my SSH in log messages. I tested policy from hosts not existing in MGMT ACL - I cannot connect to SSH, so how these

Re: [j-nsp] SSH access and not working firewall policy

2012-08-12 Thread Chris Kawchuk
One possibility - They're coming from inside your own network =) Whats the source IPs on the attempts, and what device is this (EX? MX? J? QFabric?) - CK. On 2012-08-13, at 5:07 AM, Robert Hass wrote: Hi I have Juniper running 10.4R7 with RE filter applied to lo.0 but I still see