Add new comment
Want to support HowtoForge? Become a subscriber!
|
Another approach that is more generic (can be used with any port/service) is to use the IPT_RECENT module that comes with netfilter: For example I have the following lines in my iptables config: iptables -N SSH_CHECK which basically kick-bans the source IP for 60 seconds if more than 3 connections are attempted in a 60 second limit. I've found this to be 100% effective.
Reply |



Recent comments
18 hours 19 min ago
23 hours 8 min ago
1 day 3 hours ago
1 day 6 hours ago
1 day 6 hours ago
1 day 6 hours ago
1 day 10 hours ago
1 day 11 hours ago
1 day 13 hours ago
1 day 20 hours ago