RE: Deny IP based on failed login requests

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Stephen Carville <mailto:stephen@xxxxxxxxxxxxxx>
    on Wednesday, February 09, 2005 11:24 AM said:

> On Wed February 9 2005 10:19 am, Brian Whitehead wrote:
>> I'd say a quick shell script that parses the log file for the failed
>> attempts and the creates an iptables rule to block the IP.
> 
> I actually wrote a little filter to do just that:

[snip]

> grep 'Failed passwd' /var/log/messages | login-filter.pl
> 
> Getting the addresses into the blacklist I leave as an excercise for
> the student :-)

Oh this is great! I will start testing it out right now. Thanks!


Chris.

-- 
redhat-list mailing list
unsubscribe mailto:redhat-list-request@xxxxxxxxxx?subject=unsubscribe
https://www.redhat.com/mailman/listinfo/redhat-list

[Index of Archives]     [CentOS]     [Kernel Development]     [PAM]     [Fedora Users]     [Red Hat Development]     [Big List of Linux Books]     [Linux Admin]     [Gimp]     [Asterisk PBX]     [Yosemite News]     [Red Hat Crash Utility]


  Powered by Linux