On Mon, Dec 28, 2009 at 4:59 PM, Chris H <chr...@1command.com> wrote:

>
> My point here was that by increasing the verbosity, you will more easily be
> able
> to grep against login /failures/, and more easily discover dictionary/
> brute-force
> attacks. It's certainly made my job easier, and hasn't required any
> modifications
> to our current policies. You /have/ considered PF(4), haven't you? It's
> /really/
> an excellent strategy for securing your network.
>
> --Chris H
>
> To unsubscribe, send any mail to "freebsd-stable-unsubscr...@freebsd.org"
>

I use security/denyhosts for this, very simple to setup like 5 minutes if
you're a fast reader.  There are other options as well that offer similar
functionality.

-- 
Adam Vande More
_______________________________________________
freebsd-stable@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-stable
To unsubscribe, send any mail to "freebsd-stable-unsubscr...@freebsd.org"

Reply via email to