Add new comment
Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
|
Another approach that is more generic (can be used with any port/service) is to use the IPT_RECENT module that comes with netfilter: For example I have the following lines in my iptables config: iptables -N SSH_CHECK which basically kick-bans the source IP for 60 seconds if more than 3 connections are attempted in a 60 second limit. I've found this to be 100% effective.
Reply |





Recent comments
11 hours 1 min ago
16 hours 49 min ago
18 hours 41 min ago
20 hours 26 min ago
1 day 16 min ago
1 day 6 hours ago
1 day 6 hours ago
1 day 10 hours ago
1 day 16 hours ago
1 day 21 hours ago