[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
[cobalt-users] Need to Know How to Deny Logon Attempt after 3 Attempts/Failures on RAQ3 & 4
- Subject: [cobalt-users] Need to Know How to Deny Logon Attempt after 3 Attempts/Failures on RAQ3 & 4
- From: "Jerry Farquhar" <jerry@xxxxxxxxxxx>
- Date: Thu Apr 11 05:33:41 2002
- List-id: Mailing list for users to share thoughts on Cobalt products. <cobalt-users.list.cobalt.com>
Hi all..
FYI - I've checked the archives but haven't found what I'm looking for.
My understanding after doing some research is that one of the surest ways of
defeating a Brute Force (automated) attempt is to set the server up to
dis-allow
a Login attempt after say 3 failed attempts for a certain period of time.
Can any one assist me or tell me with how or were to look for information on
how
to set this type of arrangement up on a Raq3/4?
Ideally this lock down would be an across the board lock down that would
handle
FTP/Telnet and checking email.
FYI 2 - I have a couple of Raq's that seem to be having attempts by hackers
trying to
brut force there way into them. I'm seeing 30 plus attempts at a time from
various
IP's trying to FTP & Telnet into the box's.
I'm fairly sure it's a automated script doing it since they seem to be
trying one IP
address after another. It's adding up to hundreds of attempts. So far they
have only
managed to compromise and deface one web site's contents that had a very
easy to figure
out password on the site admin account.