I second the fail2ban suggestion. It's a nice program that will probably do what you want. Tom -----Original Message----- From: speakup-bounces@xxxxxxxxxxxxxx [mailto:speakup-bounces at braille.uwo.ca] On Behalf Of Kirk Reiser Sent: Friday, March 20, 2009 8:58 AM To: Speakup is a screen review system for Linux. Subject: Re: denyhosts quandry A package I just recently found and have installed on a couple of systems is fail2ban which has a bunch of popular rule sets included and is easily expandable by the user. Basically it parses your systems logs and then performas ip blocks with iptables based on your specifications. It has ssh buffer overrun pertection built-in by default. It also has others you can easily enable. There's a debian package so I imagine there are packages available for other distro's as well. Kirk -- Kirk Reiser The Computer Braille Facility e-mail: kirk at braille.uwo.ca University of Western Ontario phone: (519) 661-3061 _______________________________________________ Speakup mailing list Speakup at braille.uwo.ca http://speech.braille.uwo.ca/mailman/listinfo/speakup