Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 19 Mar 2008 11:55:52 +0100
From:      =?iso-8859-2?Q?Daniel_Dvo=F8=E1k?= <dandee@hellteam.net>
To:        "'Phil Schwartz'" <phil_schwartz@users.sourceforge.net>, "'Mohacsi Janos'" <mohacsi@niif.hu>
Cc:        freebsd-ports@freebsd.org
Subject:   RE: FreeBSD Port: denyhosts-2.6_1 (fwd)
Message-ID:  <003a01c889af$ccce8db0$6508280a@tocnet28.jspoj.czf>
In-Reply-To: <47DE74F0.3050609@users.sourceforge.net>
References:  <20080317105640.O74919@mignon.ki.iif.hu> <47DE74F0.3050609@users.sourceforge.net>

next in thread | previous in thread | raw e-mail | index | archive | help
Thank you.

We will look forward for 2.7.

Bye

Dan=20

-----Original Message-----
From: Phil Schwartz [mailto:phil_schwartz@users.sourceforge.net]=20
Sent: Monday, March 17, 2008 2:41 PM
To: Mohacsi Janos
Cc: Daniel Dvo=F8=E1k
Subject: Re: FreeBSD Port: denyhosts-2.6_1 (fwd)


Hello,

This will be fixed in 2.7.  For now, simply place the following entry in
your denyhosts.cfg file, save and then restart denyhosts:



FAILED_ENTRY_REGEX7 =3D User (?P<user>.*) .*from (?P<host>.*?) not =
allowed=20
because not listed in AllowUsers$


make sure that the entry appears on a single line.

Regards,

Phil


Mohacsi Janos wrote:
> Corrected e-mail. Please help investigating.
>=20
> Janos Mohacsi
> Network Engineer, Research Associate, Head of Network Planning and
Projects
> NIIF/HUNGARNET, HUNGARY
> Key 70EF9882: DEC2 C685 1ED4 C95A 145F  4300 6F64 7B00 70EF 9882
>=20
> ---------- Forwarded message ----------
> Date: Mon, 17 Mar 2008 10:29:43 +0100 (CET)
> From: Mohacsi Janos <mohacsi@niif.hu>
> To: Daniel Dvo=F8=E1k <dandee@hellteam.net>
> Cc: ports@FreeBSD.org, phil_schwartz@users.sourceforge.netd
> Subject: Re: FreeBSD Port: denyhosts-2.6_1
>=20
> Dear Daniel,
>      I have CC'ed the author of denyhosts he migth help.
>      Best Regards,
>=20
> Janos Mohacsi
> Network Engineer, Research Associate, Head of Network Planning and
Projects
> NIIF/HUNGARNET, HUNGARY
> Key 70EF9882: DEC2 C685 1ED4 C95A 145F  4300 6F64 7B00 70EF 9882
>=20
> On Mon, 17 Mar 2008, Daniel Dvo=F8=E1k wrote:
>=20
>> Hi Janos,
>>
>> I have 2 servers with denyhosts and everytime I receive the security=20
>> mail with many attempts to login to my systems and everytime I am=20
>> surprised why that, if I have denyhosts.
>>
>> I have found out from this link=20
>> =
(https://bugs.launchpad.net/ubuntu/feisty/+source/denyhosts/+bug/133569) =

>> that I am not alone with these regex errors.
>>
>> I use AllowUsers option in sshd.conf to speed up to deceide what is=20
>> secured and what is ssh brute attack.
>>
>> But as I see, denyhosts has a problem to determine what to do with =
it.
>>
>> I suppose there is the same problem like in ubuntu/debian package and =

>> needs to be fixed.
>>
>> I could add in-depth report about "regex pattern ( User (?P<user>.*)=20
>> not allowed because not listed in AllowUsers ) is missing 'host'=20
>> group", if it is needed of course.
>>
>>
>> Bye.
>>
>> Dan




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?003a01c889af$ccce8db0$6508280a>