LinuxQuestions.org
Visit Jeremy's Blog.
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Security
User Name
Password
Linux - Security This forum is for all security related questions.
Questions, tips, system compromises, firewalls, etc. are all included here.

Notices


Reply
  Search this Thread
Old 12-10-2007, 12:00 PM   #1
kaplan71
Member
 
Registered: Nov 2003
Posts: 809

Rep: Reputation: 39
Script that will automatically add entries to the iptables file


Hi there --

I have the iptables firewall running on one of our systems, and I currently manually add the ip addresses of suspected hack attacks to it. I get the addresses in question via the daily logwatch output file.

Is there a script available that will automatically do this procedure when the hack attack occurs? Thanks.
 
Old 12-10-2007, 01:25 PM   #2
unSpawn
Moderator
 
Registered: May 2001
Posts: 29,415
Blog Entries: 55

Rep: Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600Reputation: 3600
Guardian, PSAD, Hogwash would be "better" choices for automating this.
 
Old 12-10-2007, 02:34 PM   #3
marozsas
Senior Member
 
Registered: Dec 2005
Location: Campinas/SP - Brazil
Distribution: SuSE, RHEL, Fedora, Ubuntu
Posts: 1,508
Blog Entries: 2

Rep: Reputation: 68
Let me add to unSpawn's list, the program fail2ban (http://fail2ban.sourceforge.net/) which I am using even in the servers to temporary add an iptables rule (and to remove it after a configurable delay), for blocking consecutive login failures in services like ftp, ssh and in some web pages (apache).
 
  


Reply


Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
Automatically run script on file? paddyjoy Linux - Software 3 10-03-2006 05:29 PM
Need a script to add DNS entries suhasingale Linux - Enterprise 2 03-09-2006 12:47 AM
script automatically add entry in cron daemon? Thinking Linux - General 1 03-30-2005 06:27 AM
RH8 - how to automatically run iptables rules shell script at boot time nu-B Linux - General 1 10-29-2003 09:38 PM
Script thats add users automatically embalmedlenin *BSD 1 09-14-2003 05:34 PM

LinuxQuestions.org > Forums > Linux Forums > Linux - Security

All times are GMT -5. The time now is 11:32 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration