John L., John V., Ian, Roy, Morris, Andrew, John S., Stephan, Bogdan, thanks 
VERY MUCH for responding! Much appreciated!

John V.,  

" Iptables is the elegant, but complex way of limiting connections. Newer 
versions of the kernel have an ipt_recent module that allows you to detect and 
temporarily (or permanently) shutdown offending IP addresses based on how many 
times in a given duration that a connection has been made. This is one way to 
solve the problem and I recommend it if you are interested in learning 
firewalling. "

Looks like IPTABLES it is!    My knowledge on IPTABLES is zero but there is 
always a first time for everything!  I am however interested in this 
ipt_recent.  I am using kernel 2.6.  I'll do some reading on this also and 
remove my SSH port to a non-default port.

Ian:  I am using psad and portsentry for monitoring.   The throttling feature 
is quite interesting.   I'll do some reading on this more and will also 
investigate the temporary banning of IP's based on the number of trials.

Thanks and regards to all!

Reply via email to