[SDBUG] brute force ssh username search on my box

Dave Smith dsmith at n2.net
Tue Apr 21 22:10:18 PDT 2009


I don't think you want your provider trying to block these.

If you have a small number of users that need to use ssh on your server,
then by all means change the ssh port you use.

Dave Smith

On Tue, Apr 21, 2009 at 09:58:00PM -0700, J. Cordaro wrote:
> Hi,I'm using rootbsd's Omicron package ($40/mo for Xen sharded Xeon E5420 - not bad).  The problem is I am getting hammered by ssh script kiddies.  Based on this doc: http://www.freebsdwiki.net/index.php/Block_repeated_illegal_or_failed_SSH_logins I've tweaked the sshdaemon and run a sweeper script to add the 'bad' ips to pf's block list.  The questions are, 1) should the hosting service block all this junk for me?  2) Should I change the ssh port?Thanks,Jay
> 
> 
>       
> _______________________________________________
> SDBUG mailing list
> SDBUG at sdbug.org
> http://lists.sdbug.org/mailman/listinfo/sdbug
> 


More information about the SDBUG mailing list