Skip to content

Comment on The OpenSSH Bug That Wasn'tparent

Comments

Unless they can provide a username that crashes fail2ban via blowing up the regex parsing... and then they get all the free tries they want.

fail2ban/sshguard/etc are not infallible. Someone will find a way to break them.

I think fail2ban does not do IPv6 yet.

I also get 0 attempts via IPv6 interestingly enough. That said, I think fail2ban does support v6 now, but not all of the firewalls do (like ipfw on my ancient ppc mac)

AboutSource Built by g1lg1l

Hackerly is an independent reader for Hacker News, built on the public HN API. Not affiliated with Y Combinator.