Re: [Nolug] blocking SSH

From: Mark A. Hershberger <mah_at_everybody.org>
Date: Sun, 05 Sep 2004 13:58:42 -0400
Message-ID: <87n004ppgt.fsf@weblog.localhost>

Randy Flood <stock_investor_guy@yahoo.com> writes:

> I remember seeing a tool (I can't think of it off the
> top of my head, but it will come to me. Perhaps
> someone else will see my description and know the name
> of it) that when it sees connections to services that
> you are NOT running automatically would configure
> rules in /etc/hosts.deny to completely deny access to
> that IP to everything.

Portsentry. Also does iptables, like you said. Very nice.

Last I checked, the Debian maintainer of the package had taken over
upstream maintenance as well.

If you like portsentry, you might like logcheck as well.

Mark.

-- 
A choice between one man and a shovel, or a dozen men with teaspoons
is clear to me, and I'm sure it is clear to you also.
    -- Zimran Ahmed <http://www.winterspeak.com/>

___________________
Nolug mailing list
nolug@nolug.org

Received on 09/05/04

This archive was generated by hypermail 2.2.0 : 12/19/08 EST