[Wylug-help] Security log message

James Holden wylug at jamesholden.net
Mon Mar 10 10:30:21 GMT 2008


On Mon, Mar 10, 2008 at 08:27:00AM +0000, John Hodrien wrote:
> On Mon, 10 Mar 2008, Jim Jackson wrote:
> 
> >>>This is a new situation to me as I've not used imap from outside until
> >>>recently, so all help is most gratefully received.
> >>
> >>I wouldn't treat this differently to having ssh accessible externally.
> >>
> >
> >Or indeed ANY service :-)
> 
> Well, I'd slightly disagree with that.  I specifically wanted an example of 
> a
> service that required a user login.
> 
> >Compared with the regular unremitting attempts at hacking my web server, 
> >and the regular pokes at ssh, the IMAP "attacks" are pretty tame.
> 
> ssh certainly gets a pounding from brute force attempts.  That was why I was
> tempted by rate limiting it.

It certainly does. I tend to run SSH on unconventional ports because of
this. I see lots and lots of dictionary attacks.

james

> 
> jh
> 
> -- 
> "It's not the bullet with my name on it that worries me.  It's the one that
>  says 'To whom it may concern'."
>                                                 -- Belfast Resident 
>                                                 (16/10/91)
> 
> _______________________________________________
> Wylug-help mailing list
> Wylug-help at wylug.org.uk
> https://mailman.lug.org.uk/mailman/listinfo/wylug-help
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 189 bytes
Desc: Digital signature
Url : http://list.wylug.org.uk/pipermail/wylug-help/attachments/20080310/4eeca61a/attachment-0001.bin


More information about the Wylug-help mailing list