TIP: Click on subject to list as thread! ANSI
echo: linux
to: ALEXEY VISSARIONOV
from: JOAQUIM HOMRIGHAUSEN
date: 2017-12-19 13:37:00
subject: Alternative(s) to ipset o

 av> Didn't you read the message before answering it?

Of course I did.

 av> https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-5642
 av> and some others discovered since that.

Thanks for pointing that out.

 JH>> I don't see why these are mutually exclusive ... but maybe I'm
 JH>> not an expert enough. If you use key-only authentication for SSH

 av> Don't you?

That's what I said.

 JH>> (for example), it makes perfect sense to add someone to a ban
 JH>> list for 15-600 minutes if they fail 3 times (for example).

 av> Now imagine someone had tricked your funny stupid fail2ban to ban
 av> _you_...

Yes, imagine that.

 JH>> I quite often legitimately connect with 2-3-4 SSH sessions to the
 JH>> same server within a few minutes, but they don't fail of course :)

 av> I guess you simply don't know about screen.

Oh but I do. I don't know what in my above text led you to that conclusion.



 -joho

---
* Origin: code.code.code (2:20/4609)

SOURCE: echomail via QWK@docsplace.org

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.