Re: [nlug] fail2ban alternative for CentOS 7

2023-05-05 Thread Thomas Bartkus
John R. Dennison said: >> Move sshd to another port; it does nothing to heighten security but it >> will reduce log / alert volume by more than a bit. Yes. Moving to an odd port dramatically cuts the number of pwd attacks. And I would call that increased security. On Wednesday, May 3

Re: [nlug] fail2ban alternative for CentOS 7

2023-05-05 Thread John R. Dennison
On Fri, May 05, 2023 at 10:16:59AM -0700, Thomas Bartkus wrote: > > Yes. Moving to an odd port dramatically cuts the number of pwd attacks. > And I would call that increased security. Security through obscurity does not work :) This is merely a method to reduce alert & log volume so one can con

Re: [nlug] fail2ban alternative for CentOS 7

2023-05-05 Thread THOMAS BARTKUS
>> Security through obscurity does not work :) That's a canard. It would be more accurate to say that it is not enough. And it isn't. But anything that prevents a significant number hack attempts is helpful. So one should strive for obscurity. Just because there are "persistent pests" out there

Re: [nlug] fail2ban alternative for CentOS 7

2023-05-05 Thread Kent Perrier
On Fri, May 5, 2023 at 12:17 PM Thomas Bartkus wrote: > John R. Dennison said: > >> Move sshd to another port; it does nothing to heighten security but > it > >> will reduce log / alert volume by more than a bit. > > Yes. Moving to an odd port dramatically cuts the number of pwd attacks.