This is an old revision of the document!


Tip's & Trips

New page for t'n't! More stuff on front page to come…

Internet services

Postfix -
DNS
smtpd_tls_auth_only = yes

IMP
IRC

Hardware

Cisco - vse o kiskotu

Windows

Linux

Apache

Logging is easy, just add the same rule but with a -j LOG –log-prefix SSHBRUTE or whatever you want. eg; iptables -A INPUT -m hashlimit -m tcp -p tcp –dport 22 –hashlimit \ 1/min –hashlimit-mode srcip –hashlimit-name ssh -m state \ –state NEW -j LOG –log-prefix SSHBRUTE

As for permantely adding hosts, why? Poluting a firewall ruleset with a rule that isn't going to be hit frequently is a waste. Which is why the hashlimit rule is perfect for this situation. -miah

start.1138663508.txt.gz · Last modified: 2009/05/25 00:34 (external edit)
CC Attribution-Share Alike 4.0 International
Driven by DokuWiki Recent changes RSS feed Valid CSS Valid XHTML 1.0 ipv6 ready