At 3:39 PM -0500 11/6/07, Roy McMorran wrote:
>I'm getting indications in my logs of something new; it appears to be a
>distributed attack.  One host will try one or two passwords, then a
>different host, then another, etc, etc.  Usually they don't trip the
>Denyhosts threshold (unless they're trying root).  Is anyone else seeing
>this?  It's a bit disconcerting.

Same thing here.  Two attempts per originating host.

-- 
------------------------------
 [EMAIL PROTECTED]      Ben Liberman
------------------------------

-------------------------------------------------------------------------
This SF.net email is sponsored by: Splunk Inc.
Still grepping through log files to find problems?  Stop.
Now Search log events and configuration files using AJAX and a browser.
Download your FREE copy of Splunk now >> http://get.splunk.com/
_______________________________________________
Denyhosts-user mailing list
[email protected]
https://lists.sourceforge.net/lists/listinfo/denyhosts-user

Reply via email to