Honeypots mailing list archives

Re: Displaying SSH password attempts


From: Tom Doherty <tomd () singlesecond com>
Date: Wed, 05 Jul 2006 17:01:35 +0100

Sorry, I must of not made myself clear. My query wasn't about preventing ssh bruteforcing (such threads have been done to death). I wanted to display passwords tried, being a honeypot I'm encourage people to try and gain access.

Harry Hoffman wrote:
why not just use port-knocking to allow iptables to grant access to port 22?

http://www.cipherdyne.org/fwknop/

That way it's closed off to the whole world until you decide you want it
open from a specific IP address.

--Harry




Current thread: