Development issues regarding the cerowrt test router project
 help / color / mirror / Atom feed
* [Cerowrt-devel] blocking probes...
@ 2013-01-13  4:50 Dave Taht
  2013-01-13  5:01 ` Sebastian Moeller
                   ` (2 more replies)
  0 siblings, 3 replies; 6+ messages in thread
From: Dave Taht @ 2013-01-13  4:50 UTC (permalink / raw)
  To: cerowrt-devel

one of the underused features of cerowrt is that I stuck a sensor on
xinetd to detect attempts to telnet or ftp to the router and cut off
access to some other services, notably ssh.

I would have loved to extend this facility to either do it entirely in
iptables or leverage xinetd to talk to iptables to (for example)
disable access to the web server.

I'm curious if anyone elses server logs ever show something like this
in the Real World:

Jan 12 20:44:02 europa daemon.crit xinetd[3273]: 3273 {process_sensor}
Adding 190.185.12.121 to the global_no_access list for 120 minutes

And I'm curious as to what more fully blown tools like this already exist.

-- 
Dave Täht

Fixing bufferbloat with cerowrt: http://www.teklibre.com/cerowrt/subscribe.html

^ permalink raw reply	[flat|nested] 6+ messages in thread

end of thread, other threads:[~2013-01-28 18:49 UTC | newest]

Thread overview: 6+ messages (download: mbox.gz / follow: Atom feed)
-- links below jump to the message on this page --
2013-01-13  4:50 [Cerowrt-devel] blocking probes Dave Taht
2013-01-13  5:01 ` Sebastian Moeller
2013-01-13  9:15 ` Török Edwin
2013-01-28 15:44   ` Török Edwin
2013-01-28 18:49     ` Maciej Soltysiak
2013-01-13 20:22 ` Michael Richardson

This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox