On Fri, Apr 20, 2007 at 12:47:20PM +0300, Nick Demou wrote:
> [...]
> Any other idea of simple measures that will keep as many attackers
> away from the one and only service that is listening to the Internet?
>
Well, if which outbound ports are available is a real concern, then
consider the following:
- rate-limit new ssh connections (I use this)
[this] will keep your logs from getting cluttered (and will also slow
attackers down greatly so that they take longer to get to other people's
machines).