Unix Technical Forum

login fail block IP

This is a discussion on login fail block IP within the Sun Solaris Administration forums, part of the Solaris Operating System category; --> I have been looking for a utility that can block an IP, based of login failures. A while ago, ...


Go Back   Unix Technical Forum > Unix Operating Systems > Solaris Operating System > Sun Solaris Administration

FAQ Members List Calendar Search Today's Posts Mark Forums Read
  #1 (permalink)  
Old 01-16-2008, 09:18 AM
Mike Dundas
 
Posts: n/a
Default login fail block IP

I have been looking for a utility that can block an IP, based of login
failures. A while ago, I read about a utility on a linux newsgroup that
blocks IP address of system that has 3 failed login attempts, but I cannot
find this while googling. I think that the IP was blocked for a short time.

I use openssh 3.1.0 and ipfilter 4.1.10 on an i386 box running solaris 8
with tcpwrappers installed. Currently, the attempted logins get timed out,
but the user can try multiple times with different usernames, before their
script exhausts its "trial username list."

Any suggestions would be welcomed, I am sure updates of ssh and ipf are
overdue!

Thanks,

Mike D


Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 01-16-2008, 09:18 AM
I R A Darth Aggie
 
Posts: n/a
Default Re: login fail block IP

On Tue, 7 Mar 2006 09:52:28 -0500,
Mike Dundas <mdundas@Nospamthanks.comcast.net>, in
<5Oidnc9BHb6BA5DZ4p2dnA@comcast.com> wrote:

>+ Any suggestions would be welcomed,


http://denyhosts.sourceforge.net/
http://fail2ban.sourceforge.net/

You may have to tinker with fail2ban to get it work with your
firewall, tho I see it now supports /etc/hosts.deny.

>+ I am sure updates of ssh and ipf are overdue!


Are they broken? let us know how it goes convincing Theo that Openssh
is outdated.

--
Consulting Minister for Consultants, DNRC
I can please only one person per day. Today is not your day. Tomorrow
isn't looking good, either.
I am BOFH. Resistance is futile. Your network will be assimilated.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump


All times are GMT. The time now is 08:42 PM.


Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
SEO by vBSEO 3.2.0
www.UnixAdminTalk.com