Hacker News new | ask | show | jobs
by johngunderman 3920 days ago
While this is a good idea to prevent folks from brute-forcing their way into your machine, the article is talking about DDoS attacks. If you have 150G pointed at your network the issue isn't going to be your servers. It's going to be congestion at your network links. Your SSH settings and Fail2Ban won't help at all in this case. You'll need something like CloudFlare's DDoS protection to identify and block DDoS requests from ever reaching your network.

EDIT: Oops, just saw that the article does talk about SSH brute-forcing. Your point is quite valid.