From: Daniel A. <co...@da...> - 2017-10-08 20:46:52
|
Hello, SSHGuard 2.1 is just around the corner, and you can grab the release candidate from SourceForge: https://sourceforge.net/projects/sshguard/files/sshguard/2.0.99/ There isn’t much news regarding distribution this time around. There should be one new file for a new firewall backend included for 2.1. Otherwise things should be a smooth update from 2.0 to 2.1. If you haven’t updated to 2.0 yet, please note that flags should be removed in favor of the sshguard.conf file. Please report any issues in the issue tracker: https://bitbucket.org/sshguard/sshguard/issues?status=new&status=open Here are some of the changes and new features in this release: * New nftables sets firewall backend for Linux. * New service for brute-force login attempts against Cockpit dashboard for Linux. * New service for web app probes. Supports any server logging to NCIS common log format. * New service for brute-force login attempts against WordPress’ wp-login.php from NCIS common log format logs. * New service for SSHGuard lets you process and respond to logs from remote instances and block attackers across all your servers (e.g. using systemd-journal-remote). * LOGREADER and FILES log sources can now be configured and used at the same time. * Can now block entire subnets in response to attacks. Subnet size configurable with new IPV6_SUBNET and IPV4_SUBNET options (default to one address). Notably, attacks from the same subnet isn’t yet detected as one attack-source, but this is likely to change in a future version. * Updated matching rules for various services and environments. Regards, -- Daniel ‘da2x’ Aleksandersen SSHGuard contributor https://www.daniel.priv.no |