<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: More SSH Brute Force Protection</title>
	<atom:link href="http://www.longren.org/more-ssh-brute-force-protection/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.longren.org/more-ssh-brute-force-protection/</link>
	<description>Certified &#38; Decorated</description>
	<lastBuildDate>Thu, 09 Feb 2012 16:01:05 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Tyler</title>
		<link>http://www.longren.org/more-ssh-brute-force-protection/comment-page-1/#comment-470277</link>
		<dc:creator>Tyler</dc:creator>
		<pubDate>Wed, 13 Apr 2011 14:20:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.longren.org/2006/08/23/more-ssh-brute-force-protection/#comment-470277</guid>
		<description>Harald, Sshguard looks awesome!

The other applications listed here are probably very much out of date, as this article was written back in 2006.

Thank you so much for pointing Sshguard out to me!</description>
		<content:encoded><![CDATA[<p>Harald, Sshguard looks awesome!</p>
<p>The other applications listed here are probably very much out of date, as this article was written back in 2006.</p>
<p>Thank you so much for pointing Sshguard out to me!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Harald</title>
		<link>http://www.longren.org/more-ssh-brute-force-protection/comment-page-1/#comment-467773</link>
		<dc:creator>Harald</dc:creator>
		<pubDate>Sun, 10 Apr 2011 21:18:46 +0000</pubDate>
		<guid isPermaLink="false">http://www.longren.org/2006/08/23/more-ssh-brute-force-protection/#comment-467773</guid>
		<description>Besides fail2ban and denyhost, check out SSHGuard ( http://www.sshguard.net ). It is written in C, it supports monitoring multiple log files at once, and it took me no time to install and get working.</description>
		<content:encoded><![CDATA[<p>Besides fail2ban and denyhost, check out SSHGuard ( <a href="http://www.sshguard.net" rel="nofollow">http://www.sshguard.net</a> ). It is written in C, it supports monitoring multiple log files at once, and it took me no time to install and get working.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: jeffatrackaid</title>
		<link>http://www.longren.org/more-ssh-brute-force-protection/comment-page-1/#comment-204786</link>
		<dc:creator>jeffatrackaid</dc:creator>
		<pubDate>Wed, 02 Jul 2008 01:02:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.longren.org/2006/08/23/more-ssh-brute-force-protection/#comment-204786</guid>
		<description>I&#039;ve used DenyHost with great success when we suspect SSH brute-force attacks on servers where we&#039;ve little control over user behavior (such as web hosting systems).  

But I cannot stress enough how limiting access initially and adjusting SSH variables is the best method of security. 

MaxAuthAttempts, AllowUsers and similar variables can be added to ssh&#039;s configuration to reduce the likelihood of a brute force attack being successful.

Also, forcing users to use 8 character passwords is very helpful, and of course using only keys to access root.</description>
		<content:encoded><![CDATA[<p>I&#8217;ve used DenyHost with great success when we suspect SSH brute-force attacks on servers where we&#8217;ve little control over user behavior (such as web hosting systems).  </p>
<p>But I cannot stress enough how limiting access initially and adjusting SSH variables is the best method of security. </p>
<p>MaxAuthAttempts, AllowUsers and similar variables can be added to ssh&#8217;s configuration to reduce the likelihood of a brute force attack being successful.</p>
<p>Also, forcing users to use 8 character passwords is very helpful, and of course using only keys to access root.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: zean.no-ip.info &#187; More SSH Brute Force Protection</title>
		<link>http://www.longren.org/more-ssh-brute-force-protection/comment-page-1/#comment-30305</link>
		<dc:creator>zean.no-ip.info &#187; More SSH Brute Force Protection</dc:creator>
		<pubDate>Fri, 25 Aug 2006 00:57:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.longren.org/2006/08/23/more-ssh-brute-force-protection/#comment-30305</guid>
		<description>[...] (more&#8230;)    &#160; [...]</description>
		<content:encoded><![CDATA[<p>[...] (more&#8230;)    &nbsp; [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

