[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [cobalt-users] [cobalt-users]scanned from 211.96.149.35 with SSH-1.0-SSH_Version_Mapper



> .Anybody get any of these?
> 
> Jan  2 19:56:04 fsn1 sshd[9692]: scanned from 211.96.149.35 with
> SSH-1.0-SSH_Version_Mapper.  Don't panic.
> Jan  2 19:56:04 fsn1 sshd[9689]: Did not receive identification string from
> 211.96.149.35

Not from that address. I think I've added most of the Asia Pacific Network
to my /etc/hosts.deny file. I did get something similar today, see below.

Jan  3 03:11:57 ns1 sshd[29437]: Did not receive identification string from
212.30.9.220
Jan  3 03:11:57 ns1 sshd[29445]: scanned from 212.30.9.220 with
SSH-1.0-SSH_Version_Mapper.  Don't panic.

My Colo was running this accross all the machines on their network a while
back when they discovered that OpenSSH 3.0.1 and below had a vulnerability.
I thought that was kind of nice of them. It's probably a good way to drum up
upgrade business also.

cya,
j
-- 
http://www.bizmanuals.com