[nycbug-talk] SSH attacks

csnyder chsnyder at gmail.com
Wed Sep 10 14:18:35 EDT 2008


On Wed, Sep 10, 2008 at 2:09 PM, Yarema <yds at coolrat.org> wrote:

> PF with max-src-conn-rate set to no more than 5 connections within 3
> seconds from the same IP kicks ass is all I gatta say!

Once again, I find myself wishing there was some way to do this within
sshd itself, rather than rely on a firewall feature.

It's a great marketing strategy for the BSDs, though. "Running
OpenSSH? Then you need PF to protect it." Meh.



More information about the talk mailing list