brute force password attacks
I have seen several methods of stopping brute force password guessing attack
in the past.
NT has lockout setting, for locking account after x number of failed logins.
I think Lotus used to extend the time between login ech failed attempt.
Is there something similer for Debian ?
I have port 22 open, and although I use strong passwords, I'm concerned that
I would not know if this type of attack happened over aperiod of day/weeks
etc.
Any ideas ?
Matt
ph 02 9382 0051
mob 0412 309745
--
Reply to: