[development] Fully patched site hacked and cloaked

Domenic Santangelo domenics at gmail.com
Wed Jan 27 19:42:14 UTC 2010

On Jan 27, 2010, at 11:31 AM, Samir Nassar wrote:

> On Wed, Jan 27, 2010 at 1:11 PM, Jason A. Nunnelley <jason at jasonn.com> wrote:
>> On Wed, Jan 27, 2010 at 1:03 PM, Domenic Santangelo <domenics at gmail.com>
>> wrote:
>> Just wonder why you don't simply block attempts beyond 5 or 10.

That's more or less what fail2ban does, with some other options.

> If you are going to go through the effort of fail2ban and similar
> software why not use Public Key Authentication and call it good?

Cause "yum install fail2ban" wasn't actually a lot of effort.


More information about the development mailing list