pfSense-pkg-crowdsec icon indicating copy to clipboard operation
pfSense-pkg-crowdsec copied to clipboard

sshguard

Open mmetc opened this issue 2 years ago • 0 comments

ssh and http brute-force scenarios are not triggered because pfsense already has sshguard with more aggressive defaults (three strikes and a 2 min. ban). We may want a new scenario to catch and share these ban events. Sshguard cannot be disabled but raising its threshold we can verify that ssh and http scenarios are working.

mmetc avatar Aug 06 '23 21:08 mmetc