[geeks] SSH Scans Increasing

Joshua Boyd jdboyd at jdboyd.net
Thu Aug 21 11:19:47 CDT 2008


On Thu, Aug 21, 2008 at 07:57:25AM -0400, Phil Stracchino wrote:

> I haven't seen it.  But then, I got so sick of ssh-dictionary-scanning
> scriptkiddies filling up my logs day after day, week after week, month
> after month, and have so few non-local users, that I implemented a
> whitelist-only pf rule for SSH and FTP connections.

I wanted to be able to come in from anywhere I might be, so I just moved
the port.  It did wonders for my piece of mind.
 
> Currently I'm pondering the best means to allow users with existing
> accounts and known SSH keys to remotely authorize new IPs for themselves.



More information about the geeks mailing list