Add new comment
Do you like HowtoForge? Please consider to support us by becoming a subscriber.
|
Another approach that is more generic (can be used with any port/service) is to use the IPT_RECENT module that comes with netfilter: For example I have the following lines in my iptables config: iptables -N SSH_CHECK which basically kick-bans the source IP for 60 seconds if more than 3 connections are attempted in a 60 second limit. I've found this to be 100% effective.
Reply |




Recent comments
3 hours 43 min ago
4 hours 28 min ago
16 hours 7 min ago
18 hours 36 min ago
21 hours 52 min ago
1 day 1 hour ago
1 day 2 hours ago
1 day 3 hours ago
1 day 3 hours ago
1 day 9 hours ago