[nycbug-talk] Analyzing malicious SSH login attempts

Dru dlavigne6 at sympatico.ca
Tue Sep 12 14:27:48 EDT 2006



On Tue, 12 Sep 2006, Jeff Quast wrote:

> There is a trivial solution for blocking hosts that connect too many
> times, http://www.openbsd.org/faq/pf/filter.html#stateopts
>
> Hasn't made it to freebsd yet, of course,
> http://lists.freebsd.org/pipermail/freebsd-pf/2005-August/001409.html


That changed in November 2005:

http://www.freebsd.org/releases/6.0R/relnotes-i386.html

I've been happily using max-src-conn-rate overload since January :-)

Dru



More information about the talk mailing list