4 ms·
For me definitely! I have a tiny VPS running ARM that I use as a build server. I get so much SSH spam that it noticeably slows down the VPS (both with and witho
by ahendriksen 6y ago
For me definitely! I have a tiny VPS running ARM that I use as a build server. I get so much SSH spam that it noticeably slows down the VPS (both with and without Fail2Ban)..
"Written in Go" signifies to me that it can be faster and more resource-efficient than Fail2Ban: a good reason to check it out.
- abdusco 6y agoYou should consider changing default SSH port. It helps a lot with the spam.
- blibble 6y agoand/or add an iptables rule that limits the rate, set high enough such that you'll never hit it 1 line in your iptables config
- coolspot 6y agoAlso adding port knocking. https://netslovers.com/2018/02/28/port-knocking-server-securing-ssh-connection-centos-7/ https://netslovers.com/2018/02/28/port-knocking-server-secur...
- InvaderFizz 6y agoIs this really much of a problem? I have a VPS that's been online for years, serving port 22. I average about 200k attempts per year. I have it set to pubkey only, root can't login at all. If you connect without sending a pubkey, it pretty much instantly tells you to go away. I don't bother with fail2ban. Maybe I should start logging attempted pubkeys as a side project just to see what pops up.