Add new comment
Do you like HowtoForge? Please consider supporting us by becoming a subscriber.
|
Another approach that is more generic (can be used with any port/service) is to use the IPT_RECENT module that comes with netfilter: For example I have the following lines in my iptables config: iptables -N SSH_CHECK which basically kick-bans the source IP for 60 seconds if more than 3 connections are attempted in a 60 second limit. I've found this to be 100% effective.
Reply |





Recent comments
7 hours 53 min ago
9 hours 36 min ago
12 hours 1 min ago
12 hours 7 min ago
16 hours 41 min ago
18 hours 42 min ago
22 hours 5 min ago
1 day 12 min ago
1 day 23 min ago
1 day 2 hours ago