Preventing Brute Force Attacks With BlockHosts On Debian Lenny
Posted on: 11/10/2010 09:13 PM

Howtoforge shows you how to prevent brute force attacks with BlockHosts on Debian GNU/Linux

Preventing Brute Force Attacks With BlockHosts On Debian Lenny


In this article I will show how to install and configure BlockHosts on a Debian Lenny system. BlockHosts is a Python tool that observes login attempts to various services, e.g. SSH, FTP, etc., and if it finds failed login attempts again and again from the same IP address or host, it stops further login attempts from that IP address/host. By default, BlockHosts supports services that use TCP_WRAPPERS, such as SSH, i.e. services, that use /etc/hosts.allow or /etc/hosts.deny, but it can also block other services using iproute or iptables.



Printed from Linux Compatible (http://www.linuxcompatible.org/news/story/preventing_brute_force_attacks_with_blockhosts_on_debian_lenny.html)