Hi, I just started managing a UNIX server (that was heavily neglected since I would say the early 80's).
It's ScoOpenserver 5.06
Using SendMail and some FoxPro for UNIX apps.
I would like to know what solutions are the standard in order to stop things like:
more than 5 login attempts from 1 ip in 1 second (obvious dictionary attacks) and also how to just block out certain subnets within unix all together.
An auto-IP Banning solution would be nice...
The thing is, we have telnet open to the net. (yes i know very bad). but unfortunately it's the foundation of the business, people run the application this way. and to top it off they have 4 letter passwords some of them (I'm working on that already).
I also have a hawking dual wan router with anti-port scanning, DoS attacks etc.. so thats one small step.
Please give me any suggestions. I'm new to UNIX
It's ScoOpenserver 5.06
Using SendMail and some FoxPro for UNIX apps.
I would like to know what solutions are the standard in order to stop things like:
more than 5 login attempts from 1 ip in 1 second (obvious dictionary attacks) and also how to just block out certain subnets within unix all together.
An auto-IP Banning solution would be nice...
The thing is, we have telnet open to the net. (yes i know very bad). but unfortunately it's the foundation of the business, people run the application this way. and to top it off they have 4 letter passwords some of them (I'm working on that already).
I also have a hawking dual wan router with anti-port scanning, DoS attacks etc.. so thats one small step.
Please give me any suggestions. I'm new to UNIX