D&C GLug - Home Page

[ Date Index ] [ Thread Index ] [ <= Previous by date / thread ] [ Next by date / thread => ]

Re: [LUG] iptables and hackers

 

On Tue, 2011-08-30 at 18:19 +0000, taylorjoshu00@xxxxxxxxxxxxxx wrote:
> Hello, 
> I have a vps open to the hostile web and I would recommend a few things.
> Firstly change your ssh port- check the logs for this, you will most likely be 
> getting attacks on this too, and changing the port will stop most script kiddies 
> Secondly install fail2ban and set it up to check apache and ssh logs - it will 
> automatically create iptable rules to block attacks for a hour or however long you 
> want from the attacking IP address.
> Thirdly disable root ssh logon and use the sudo command, therefore if you were 
> comprimised your would limit the damage without allowing root password to be 
> comprimised!
> 
> Hope this helps!
> Joshua 
> www.jhaos-theory.co.uk
> Sent from my BlackBerry wireless device

        I have installed fail2ban well see how we do
thanks 
sudo is already used 






Regards

Kevin Lucas
Minions Post Master(Sub) 
sip:kevin.lucas@xxxxxxxxx
www.minionsbandb.co.uk
www.tearooms.minionsbandb.co.uk
FaceBook Minions_shop
Po House, Minions,
Liskeard Cornwall 
PL14 5LE
01579363386


-- 
The Mailing List for the Devon & Cornwall LUG
http://mailman.dclug.org.uk/listinfo/list
FAQ: http://www.dcglug.org.uk/listfaq