[ILUG] SSH dictionary attacks.

Brian Brazil bbrazil at netsoc.tcd.ie
Wed Aug 23 17:07:13 IST 2006


On Wed, Aug 23, 2006 at 05:05:34PM +0100, Niall O Broin wrote:
> Something I like the idea of is using iptables to rate limit. Shorewall
> supports this, and I have it implemented on one shorewall box like this
> 
> DNAT    net     loc:192.168.1.69        TCP     22      -
> 321.123.1.2  1/min:2
> 
> but it doesn't work - iptables -L output doesn't show this limit at all. Any
> shorewall aces got any ideas?

Just a guess, but try iptables -vL.

-xvnL are my preferred output flags.

Brian

-- 
Website: http://www.netsoc.tcd.ie/~bbrazil



More information about the ILUG mailing list