fail2ban是一款非常實(shí)用的安全軟件,通過監(jiān)視系統(tǒng)日志,設(shè)置錯(cuò)誤登陸次數(shù),可阻擋暴力密碼攻擊。
1.安裝epel yum install epel-release -y
2.安裝fail2ban yum install fail2ban -y
3.配置 cd /etc/fail2ban/ cp jail.conf jail.local vim jail.local [DEFAULT] bantime = 3600 [sshd] enabled = true
maxretry = 3
4.啟動(dòng) systemctl start fail2ban systemctl enable fail2ban
5.查看日志 fail2ban-client status
tailf /var/log/fail2ban.log
|