opened OpenSSL port

NoOp glgxg at sbcglobal.net
Mon Feb 28 01:42:50 UTC 2011


On 02/27/2011 06:20 AM, Dominik Psenner wrote:
> Every open port is like a door. As long the lock is good you won't have
> problems. :-)
> 
> My personal facorite is:
> Have SSHd open and running with fail2ban in the background that watches
> the logs for abnormal logins and when detected block those IPs for some
> time like 5 minutes. Every brute-force break-in attempt is unfeasible.
> It can also detect DDOS attacks.
...

https://help.ubuntu.com/community/Fail2ban
I'd add denyhosts to that as well:
http://manpages.ubuntu.com/manpages/maverick/man8/denyhosts.8.html
http://denyhosts.sourceforge.net/faq.html
http://packages.ubuntu.com/maverick/denyhosts






More information about the ubuntu-users mailing list