From: Greg P. <gre...@hc...> - 2009-03-10 13:01:57
|
Hi, I am using the following parameters for sshguard (v1.3). I know the -p is huge and we dont mind blacklisting intruders for long periods. I noticed today in logwatch and from further testing that once we reach about 16 entries in the accumulated list for iptables that no further entries are being accepted. /usr/local/sbin/sshguard -a 2 -p 25920000 -s 1800 -w /etc/sshguard.whitelist Please review and let me know if you need more information or logs. I am wondering if there is a limit somewhere in the binary or if this is by design. Thanks, greg |