隞乩:
q2 i; z+ L$ b! _, Fhttp://serverfault.com/questions/275669/ssh-sshd-how-do-i-set-max-login-attempts
& q* P3 k3 x% @! z/ @http://www.cnblogs.com/taosim/articles/3134394.html# a7 _+ R0 R W9 N# ~3 ^ \# _$ I
# a7 I9 H& D, |. R( n
1) /etc/ssh/sshd_config乩銝銵
" P; r6 E4 A* K% d+ x& T$ v& c7 [% b0 g: ~1 R
0 N, V; X* ?: i2) 券脩怎乩閬
( @9 d! ^8 z0 Y+ M* I- iptables -N SSHATTACK% U) w% y8 c: a% x- s' @
- iptables -A SSHATTACK -j LOG --log-prefix "Possible SSH attack! " --log-level 7
7 g# \, b: k* ^. v' Q7 k, B( k - iptables -A SSHATTACK -j DROP
銴鋆賭誨蝣 * d! i* H9 u5 P8 m% ]
3 [+ s! |6 _& d* f% t3) /var/log/syslog 閫撖航賜ssh餅
4 T+ f4 W7 W$ g! }3 J t) q; L( K, ^- Dec 27 18:01:58 ubuntu kernel: [ 510.007570] Possible SSH attack! IN=eth0 OUT= MAC=01:2c:18:47:43:2d:10:c0:31:4d:11:ac:f8:01 SRC=192.168.203.129 DST=192.168.203.128 LEN=60 TOS=0x00 PREC=0x00 TTL=64 ID=30948 DF PROTO=TCP SPT=53272 DPT=1785 WINDOW=14600 RES=0x00 SYN URGP=0
銴鋆賭誨蝣
* ~2 ~6 w: _/ S V# g; j: v3 a+ d
' T; l! w. h8 Y1 ]3 F2 Z3 R- U4 v& a0 D/ B* l) F" @ }2 ?' ]
* F% Z2 k2 r1 A |
|