From: Mij <mi...@bi...> - 2009-07-13 14:45:03
|
Dear maintainers, You have noticed that sshguard has been augmented with major new features in the recent RC releases. To the best of our knowledge, sshguard is now the only log-based IPS not vulnerable to log spoofing from local users, nor most notably the infamous Denial Of Services from remote attackers ( http://www.ossec.net/en/attacking-loganalysis.html ). This is result of the fundamental design, and as for any tool based on a good infrastructure, features are blooming with faster pace once the framework is completed. SSHGuard 1.4 is coming in the next weeks and will be a significant leap from older versions. Among the news, blacklists are finally there after many requests, and "touchiness" gives sshguard much higher effectiveness in preventing brute forces by introducing more smartness with respect to the other tools. As we do not foresee code updates for the 1.4 stable release, we invite you to start preparing packages for sshguard-1.4rc5 as sshguard-1.4 . 1.4 should appear in few weeks from now, after the usual testing, as a rename of the 1.4rc5 package. As usual, the team is available for assistance. |