[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Re: intrusion via ssh



Thanks guys.

I have to say that this list is rocking!
It is a great pleasure to discuss concrete things with smart people.

Thanks a lot,

All the best,

fred

On Thu, 31 Mar 2005 09:02:03 -0800, Todd A. Jacobs <nospam@codegnome.org> wrote:
> On Thu, Mar 31, 2005 at 12:55:46PM +0200, Frederic Guillet wrote:
> 
> > I have about 500 attemps with different usernames and the same IP so i
> > guess it is a robot which is trying to enter my system.
> 
> Use /etc/hosts.deny to block that IP address. You can also achieve
> similar results in the /etc/ssh/sshd_config file. As for whether or no
> the session was actually opened, that information is being logged to
> /var/log/auth.log by default.
> 
> --
> Find my Techno-Geek Journal at http://www.codegnome.org/geeklog/
> 
> 
> --
> To UNSUBSCRIBE, email to debian-user-REQUEST@lists.debian.org
> with a subject of "unsubscribe". Trouble? Contact listmaster@lists.debian.org
> 
> 


-- 
-------------------------------
Frederic Guillet



Reply to: