PDA

View Full Version : FTP attack


mfaridi
December 14th, 2008, 18:27
I use FreeBSD 7 and today I see my log about FTP and I see many people try connect to my FTP server , and they can not , I think I have FTP attack like SSH attack
Can I block FTP attack without Firewall , I use denyhost for SSH attack .
Can I find package for FTP attack ???
I use pure-ftpd-1.0.21_2

brd@
December 14th, 2008, 19:25
mfaridi, you should really just use a firewall... It is designed for this. That said I'm not sure of any FTP packages that use tcpwrappers. A quick google for something like "FTP server tcpwrappers" should help you along your quest.

r-c-e
December 14th, 2008, 21:21
SSHGuard and Bruteblock can do this, SSHGuard by default uses hosts.deny.

cajunman4life
December 14th, 2008, 21:37
vsftpd can be configured with tcpwrappers.

sniper007
December 30th, 2008, 16:09
You can change default ftp port. This will reduce brute force attack.

hydra
January 4th, 2009, 16:06
Check this out:
http://www.ossec.net/en/attacking-loganalysis.html