More SSH 'trolling'

Brian Fahrlander brian at fahrlander.net
Thu Oct 14 17:24:46 UTC 2004


On Thu, 2004-10-14 at 12:02, Björn Persson wrote:
> Brian Fahrlander wrote:

> A list like the one below, right? I've seen a couple of these at home. 
> It sure is a breakin attempt, but I allow only public key authentication 
> so I'm not particularly worried.

    Yeah, me too, but I like to keep at least 2-3 levels of protection
from their schemes from my having to rebuild the machine.  :>

    It's a script, then....I have almost the exact same users
attempted.  But what bothers me is the reference to the "BREAKIN
ATTEMPT" (which is obvious, btw) and it refering to line 6 of
/etc/hosts, where it comes up with the AF_Inet or whatever "not found".

    Well of course it's not found- every other app that uses tcpwrappers
knows that as an 'unknown' and it just denies it.  Go figure.

-- 
------------------------------------------------------------------------
Brian Fahrländer                  Christian, Conservative, and Technomad
Evansville, IN                                 http://www.fahrlander.net
ICQ 5119262
AIM: WheelDweller
------------------------------------------------------------------------
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 189 bytes
Desc: This is a digitally signed message part
URL: <http://listman.redhat.com/archives/fedora-list/attachments/20041014/4c2fbbdb/attachment-0001.sig>


More information about the fedora-list mailing list