Denyhosts - other options?
francis picabia <[email protected]>
| Newsgroups | gmane.os.solaris.managers |
|---|---|
| Message-ID | <CA+AKB6GSU_MLJdhwrzRZdhZ=wGf010w6UJXZt=pa_-GHWKYXdA@mail.gmail.com> |
Howdy, Using Denyhosts on Linux has worked well for me. On Solaris I'm not getting the results I expect. It seems to be a problem deeper than REGEXP. Looking at the Denyhosts project, it has not been updated in many years and the participation in the mailing list is next to nothing. It makes me wonder if other admins are quietly using something else I don't know of. What do other Solaris admins use to block brute force ssh attempts? I've heard of fail2ban and sshblock. There are reports of injected log data in the media. Have admins switched to a ip filter method? I can summarize to the list if there are some good responses.