Softpedia
 


LINUX CATEGORIES:



GLOBAL PAGES >>
NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
WEEK'S BEST
  • Linux Kernel 3.9.3 / 3....
  • LibreOffice 3.6.6 / 4.0.3
  • MPlayer 1.1.1
  • systemd 204
  • Arch Linux 2013.05.01
  • Blender 2.67a
  • KDE Software Compilatio...
  • CrunchBang Linux Stable...
  • Elementary OS 0.1 / 0.2...
  • SystemRescueCd 3.6.0
  • Home > Linux > System > Networking

    BlockSSHD 1.1

    Download button

    No screenshots available
    Downloads: 602  View global page NEW!  Tell us about an update
    User Rating:
    Rated by:
    Excellent (5.0/5)
    1 user(s)
    Developer:

    License / Price:

    Last Updated:

    Category:
    James Turnbull | More programs
    GPL / FREE
    April 27th, 2007, 18:35 GMT
    ROOT / System / Networking

     Read user reviews (0)  Refer to a friend  Subscribe

    BlockSSHD description

    BlockSSHD is a Perl script based on BruteForceBlocker v1.2.3 that dynamically adds IPTables rules to block SSH brute force.

    BlockSSHD is a Perl script based on BruteForceBlocker v1.2.3 that dynamically adds IPTables rules to block SSH brute force attacks.

    BlockSSHD checks a log file you specify, for example /var/log/secure on a Red
    Hat, for SSH login failure messages. If it detects a failure message it records the source IP address and starts a counter. If messages continue to be detected from the same source IP address the counter is incremented for each message. When the counter reaches a user-specified threshold then the script will add an IPTables rules blocking SSH connections from that source IP address.

    A user-specified time-out is also defined to trigger a reset of the counter. If the counter is incremented but has not yet reached the blocking threshold and a new login failure message arrives then BlockSSHD checks the time-out. If the last increment of the counter occurred earlier than the current time minus the time-out period then the counter is reset rather than incremented. The time-out defaults to 600 seconds (10 minutes).

    The BlockSSHD script also has some command line options:

    *) -d | --daemon | --start - Runs the script as a daemon
    *) --stop - Stops the script
    *) -h | --help - Prints help text
    *) -v | --version - Print the version

    Running the BlockSSHD script without any command line options will start it interactively.

    You will also find a Red Hat style init script in the init directory.

    What's New in This Release:

    · Fixed weird ^Ms in files
    · Added Anton's WHOIS functino to blocking emails
    · If restore block function is off then remove log file to ensure old IPS are not accidently applied
    · If restore block function is on then automatically create log file



    Product's homepage

      


    TAGS:

    brute force attack | block SSH attacks | block brute force attacks | BlockSSHD | block | SSH

    Go to top

    WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

    SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM