1
0
mirror of https://git.FreeBSD.org/ports.git synced 2024-12-15 03:14:23 +00:00
freebsd-ports/security/sshit/files/pkg-message.in
Vanilla I. Shu 0a3fde80af Add sshit 0.5, checks for SSH/FTP bruteforce and blocks given IPs.
PR:		ports/90603
Submitted by:	Jui-Nan Lin <jnlin@csie.nctu.edu.tw>
2005-12-18 16:03:28 +00:00

25 lines
683 B
Plaintext

===> CONFIGURATION NOTE:
Configuration of sshit is done via main configuration file
located at %%PREFIX%%/etc/sshit.conf
To run the script, add a line in /etc/syslog.conf:
auth.info;authpriv.info |exec %%PREFIX%%/sbin/sshit
and restart syslogd.
If you want to use pf as the firewall, you should add a table and the
corresponding deny rule. For example,
(In /etc/pf.conf)
table <badhosts> persist
block on $extdev from <badhosts> to any
and reload the pf rules.
If you want to use ipfw2 (with table) as the firewall, you should add a
table and the corresponding deny rule. For example,
# ipfw add deny ip from table(0) to any