Hi, running on Ubuntu 9.04 and the denyhosts 2.6-5 package. When I first install it, I notice that hosts, hosts-root and hosts-restricted *all* have the same IP addresses in them with 0 login attempts. In hosts-root for example for IPs I know tried to login as root, the "number of times" field is set to 0 - is this normal?
Aug 6 09:46:38 ianu sshd: User root from 22.214.171.124 not allowed because not listed in AllowUsers
Aug 6 09:46:38 ianu sshd: pam_unix(sshd:auth): authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=126.96.36.199 user=root
188.8.131.52:0:Thu Aug 6 14:21:23 2009
Now Denyhosts is adding the right IPs to hosts.deny, so I don't think this is causing it a problem, but it does make administering the machine harder as it is not accurately logging the information in the security log.
Denyhosts is still correctly
Log in to post a comment.