From: Kevin Z. <kev...@gm...> - 2014-12-15 15:51:27
|
On 12/15/2014 00:39, LuKreme wrote: >> Using the default settings, it takes 4 failed attempts. Each >> failed attempt adds 10 "points", and after 40 "points" the >> offending IP is blocked. You can configure this threshold. > > Thanks. I haven't found instructions on how to configure that stuff > yet (there's nothing in the default pf.log for example), but at least > I know the defaults are sensible. You can configure SSHGuard by passing it options from the command line; type `sshguard -h` for a list of options. Depending on your operating system and how you run SSHGuard, you will need to pass these command line options differently. Blocked addresses are released after a certain amount of time, unless you have blacklisting enabled. Best, Kevin Zheng -- Kevin Zheng kev...@gm... | ke...@kd... | PGP: 0xC22E1090 |