PDA

View Full Version : [ubuntu] sshblack & firestarter



BarryDocks
November 21st, 2009, 12:26 PM
Hi all,
Hope someone might help me:

I would like to configure my server as a gateway and dhcp server so I though I would use Firestarter as is seems straight forward to set up and ticks most boxes.

I am concerned about ssh security and like the idea of blocking IPs after a certain number of failed log-in attempts. I was thinking of using something like sshblack to administer this for me.

Is it possible (or necessary) to install both ssblack and firestater?

Thanks

PS I intend to use RSA keys rather than password authentication for the ssh server

Yoann Juet
November 21st, 2009, 02:57 PM
Is it possible (or necessary) to install both ssblack and firestater?

Certainly ; all what you need is a firewall - firestarter or just a little bash script with iptables rules - and another tool to automatically ban ssh brute force/dictionary based attacks - sshblack, fail2ban... -. Another option would be to restrict, through iptables rules, source IPs allowed to ssh in to your server.