Mark Hofmann wrote to Digimaus <=-
The Cisco ASA firewall has this nifty feature that allows you to limit simultaneous connections from the same source/external IP. That is
what I put in place for tcp/23 for the BBS nodes over here. At least
that keeps the same IP from flooding connections.
I've done similar using pfSense and fail2ban.
I'm running these jails in fail2ban:
Status |- Number of jail: 12
`- Jail list: apache-auth, apache-badbots,
apache-botsearch, apache-fakegooglebot, apache-modsecurity, apache-nohome, apache-noscript, apache-overflows, apache-shellshock, proftpd, recidive,
sshd
You don't want to see how full my recidive filter is. Maybe at the end of
the month I'll clear it and start all over again for fun. <G>
-- Sean
... The distance between insanity and genius is measured only by success.
--- MultiMail/Linux
* Origin: Outpost BBS * Johnson City, TN (618:618/1)