All of lore.kernel.org
 help / color / mirror / Atom feed
* Looking for automation scripts
@ 2007-01-05 19:44 Tim Heagarty
  2007-01-05 19:48 ` Dimitri Yioulos
  2007-01-06  5:05 ` markee
  0 siblings, 2 replies; 9+ messages in thread
From: Tim Heagarty @ 2007-01-05 19:44 UTC (permalink / raw)
  To: netfilter

I've seen a few references here to scripts that monitor attacks and
dynamically update iptables rules to knock down the attacks. Can anyone
provide some good research starting points or sample scripts that they use?
I've found a few things with google but respect the collective out here much
more.


Thank you,

Tim Heagarty, CISSP, CISA, MCSE
http://www.TheaSecure.com/
(928) 533-9690
"There are 10 kinds of people in the world; those that understand binary,
and those that don't."

--
No virus found in this outgoing message.
Checked by AVG Free Edition.
Version: 7.5.432 / Virus Database: 268.16.5/616 - Release Date: 1/4/2007
1:34 PM



^ permalink raw reply	[flat|nested] 9+ messages in thread
* RE: Looking for automation scripts
@ 2007-01-06 14:55 Tim Evans
  0 siblings, 0 replies; 9+ messages in thread
From: Tim Evans @ 2007-01-06 14:55 UTC (permalink / raw)
  To: jengelh, netfilter


>denyhosts.sf.net?

This is a great package, but it doesn't touch iptables rules.  Rather, it relies 
on tcp wrapper (ssh must be built with libwrap) and it dynamically adds IP's to 
/etc/hosts.deny
--
Tim Evans, TKEvans.com, Inc.	|    5 Chestnut Court
tkevans@tkevans.com		|    Owings Mills, MD 21117
http://www.tkevans.com/		|    443-394-3864
http://www.come-here.com/News/	|    



^ permalink raw reply	[flat|nested] 9+ messages in thread

end of thread, other threads:[~2007-01-06 23:20 UTC | newest]

Thread overview: 9+ messages (download: mbox.gz follow: Atom feed
-- links below jump to the message on this page --
2007-01-05 19:44 Looking for automation scripts Tim Heagarty
2007-01-05 19:48 ` Dimitri Yioulos
2007-01-05 21:20   ` Jan Engelhardt
2007-01-06  5:05 ` markee
2007-01-06  7:00   ` Andrew
2007-01-06 14:35   ` Jan Engelhardt
2007-01-06 15:27     ` Michael Rash
     [not found]       ` <0dd44240578edb703165547e121ceb7c@afm-koeln.de>
2007-01-06 23:20         ` William Perry
  -- strict thread matches above, loose matches on Subject: below --
2007-01-06 14:55 Tim Evans

This is an external index of several public inboxes,
see mirroring instructions on how to clone and mirror
all data and code used by this external index.