Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Just a friendly tip: Try to verify whether Fail2ban actually works and keep monitoring your log files (Logwatch). I once found some dumb ass trying to brute force his way into my Postfix server, unfortunately Fail2ban didn't catch it and I only noticed when Logwatch showed me the authentication failures (several hours and thousands of attempts later).


Ouch. Did you tell upstream so that they could fix this for everyone?




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: