隞乩:
q& n5 y1 L! e& ]7 t+ q5 y+ Xhttp://serverfault.com/questions/275669/ssh-sshd-how-do-i-set-max-login-attempts5 t; f3 x; T3 o+ ]2 ?; Y, z
http://www.cnblogs.com/taosim/articles/3134394.html
6 b4 T5 a$ O0 a: F, C+ I) J! J7 S8 L7 F) g! K) ~, l
1) /etc/ssh/sshd_config乩銝銵
5 o1 R! b( D/ c$ x+ Z$ l. m* ?0 Q& a( j: N1 O4 B, Y/ A
9 L# _, _0 k/ D2) 券脩怎乩閬
0 R/ ^# N/ ?6 \- iptables -N SSHATTACK E3 s& A- ?; ~, B* [' a
- iptables -A SSHATTACK -j LOG --log-prefix "Possible SSH attack! " --log-level 7
" n; F, h: U3 i! a - iptables -A SSHATTACK -j DROP
銴鋆賭誨蝣 0 W' L4 q% Y+ W& N! a$ [
. ]- ^0 n% a6 g( V
3) /var/log/syslog 閫撖航賜ssh餅) z9 L$ [9 r* S$ R y7 |
- Dec 27 18:01:58 ubuntu kernel: [ 510.007570] Possible SSH attack! IN=eth0 OUT= MAC=01:2c:18:47:43:2d:10:c0:31:4d:11:ac:f8:01 SRC=192.168.203.129 DST=192.168.203.128 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=30948 DF PROTO=TCP SPT=53272 DPT=1785 WINDOW=14600 RES=0x00 SYN URGP=0
銴鋆賭誨蝣
2 V9 G( w% F: r+ |( r7 M$ e- v F9 w( h, Z9 a; B
4 x; {0 d( N, t5 X2 G, @
2 O1 \( P. k: A; `0 R z6 u |
|