On Oct 14, 2004 at 06:18, Brian Fahrlander in a soothing rage wrote: > I just got a notice from LogWatch with the dire warning "POSSIBLE >BREAKIN ATTEMPT!". Quite a lot of them, too. Yep. Welcome to the club! (-: In addition to what Mike Ramirez posted, I also only allow specified users to ssh in using the 'AllowUsers' directive in /etc/ssh/sshd_config. I also specifically deny root logins via sshd using the 'PermitRootLogin no' directive. I never bothered with the /etc/hosts.{allow,deny} thingy since the attacks come from different sites. N.Emile... -- Registered Linux User # 125653 (http://counter.li.org) Switch to: http://www.speakeasy.net/refer/190653 QOTD: "I'm just a boy named 'su'..." 07:54:04 up 108 days, 1:08, 4 users, load average: 0.08, 0.02, 0.01