nanog mailing list archives
Re: Customer-facing ACLs
From: Dave Pooser <dave.nanog () alfordmedia com>
Date: Sat, 08 Mar 2008 00:59:17 -0600
Port 22 outbound? And 23? Telnet and SSH _outbound_ cause that much of a concern? I can only assume it's to stop clients exploited boxen being used to anonymise further telnet/ssh attempts - but have to admit this discussion is the first i've heard of it being done 'en masse'.
On one test machine that I leave SSH unfirewalled on, I'll see 200-4000 SSH login attempts per day, trying to brute force it. Lets see, this morning in an eight-minute span from one IP in Aruba 100 attempts for root; other usernames attempted include admin, staff, sales, office, alias, stud (!), trash, guest, test, oracle, a few personal names, apache, svn, iraf, swsoft, gast, sirsi and nagios. And this is a relatively slow day. Telnet I wouldn't know about, but I'm told bots will try to force it as well. -- Dave Pooser, ACSA Manager of Information Services Alford Media http://www.alfordmedia.com
Current thread:
- RE: Customer-facing ACLs, (continued)
- RE: Customer-facing ACLs Carpenter, Jason (Mar 07)
- Re: Customer-facing ACLs Dave Pooser (Mar 07)
- Re: Customer-facing ACLs Andy Dills (Mar 07)
- Re: Customer-facing ACLs Dave Pooser (Mar 07)
- Re: Customer-facing ACLs Mark Foster (Mar 07)
- RE: Customer-facing ACLs Frank Bulk (Mar 07)
- Re: Customer-facing ACLs Joel Jaeggli (Mar 07)
- RE: Customer-facing ACLs Frank Bulk - iNAME (Mar 08)
- Re: Customer-facing ACLs Justin Shore (Mar 08)
- RE: Customer-facing ACLs Frank Bulk - iNAME (Mar 08)
- Re: Customer-facing ACLs Dave Pooser (Mar 07)
- Re: Customer-facing ACLs Mark Foster (Mar 07)
- Re: Customer-facing ACLs Dave Pooser (Mar 08)
- Re: Customer-facing ACLs Jay Hennigan (Mar 08)
- Re: Customer-facing ACLs William Norton (Mar 08)
- NANOG laptops (was Re: Customer-facing ACLs) David Conrad (Mar 09)
- Re: NANOG laptops (was Re: Customer-facing ACLs) Randy Bush (Mar 09)
- Re: NANOG laptops (was Re: Customer-facing ACLs) Jason Lixfeld (Mar 09)
- Re: NANOG laptops (was Re: Customer-facing ACLs) Paul Vixie (Mar 09)
- Re: NANOG laptops (was Re: Customer-facing ACLs) Randy Bush (Mar 09)
- Re: NANOG laptops (was Re: Customer-facing ACLs) Bill Woodcock (Mar 09)