• limer@lemmy.ml
    link
    fedilink
    arrow-up
    1
    ·
    6 months ago

    I think ssh with passwords are a security risk and use key only logins.

    But even then get hit with numerous attempts which fail2ban does not help that much; because of the different ip being used in the bots

    • librebyte@lemmy.mlOPM
      link
      fedilink
      arrow-up
      2
      ·
      6 months ago

      fail2ban is quickly and easy solution but you can achieve the same with nftables using set and limit rate… I do it using these rules

      nftables.conf