|
|
|
|
|
by nyx_
2115 days ago
|
|
I like to run fail2ban in conjunction with a non-standard SSH port on which only public key auth is available. This way, most of the junkware that does rude things to port 22 is banging on a closed door; the slightly more effective junkware that actually finds the SSH port gets banned immediately, because I know anyone trying to log in with a password is full of it. |
|