The script kiddies (fake hackers) can't really get into your systems if you apply simple security policies and sanity checks.
The real hackers that can get it aren't blocked by any of your ip filters. They just go through proxies.
41–44 of 44 posts
The script kiddies (fake hackers) can't really get into your systems if you apply simple security policies and sanity checks.
The real hackers that can get it aren't blocked by any of your ip filters. They just go through proxies.
Also consider if you can not restrict your ssh and ftp access to very tiny blocks, you can just allow US (or your country) addresses into those ports.
Of course proxies defeat all this but it slows down the generic script use.
Configserver firewall is amazingly powerful and easy (and free) in this regard
http://www.configserver.com/cp/csf.html
CSF is also good at noticing distributed attacks across ip ranges.
ps. please consider donating to Chirpy for CSF, I'd hate to see it die someday
I'm waiting for Dalton to complain about the use of the Svbtle theme...It seems to happen to every post that links to somewhere not svbtle that uses it.
Really Dalton Caldwell? Dalton is pretty cool. I don't think he cares. Dennis might not be too happy though, but I haven't heard anything from him.
Dalton's app.net is one of the things I was playing with last night.