For the record, denyhosts currently relies upon the tcp_wrappers functionality in openssh to function. While it's possible to make it manipulate the firewall as well, the whole situation is kind of a mess. (Does it talk to firewalld? What if you're not running firewalld?) Sadly I know how terrible tcp_wrappers is and so I know it needs to go away. It's just unfortunate that there's no replacement for it besides firewalling, and dealing with the firewall is unfortunately so complicated. So that's three of my packages that use tcp_wrappers in some way (denyhosts, apcupsd and cyrus-imapd) though I suspect two of those just need the build dependencies dropped. - J< _______________________________________________ devel mailing list -- devel@xxxxxxxxxxxxxxxxxxxxxxx To unsubscribe send an email to devel-leave@xxxxxxxxxxxxxxxxxxxxxxx