Countering SSH bruteforce attacks

From RHS Wiki
Jump to navigation Jump to search

Create Parsing command

sudo touch /usr/bin/brute
sudo chmod +x /usr/bin/brute
sudo nano /usr/bin/brute
#!/bin/bash
sudo cat /var/log/auth.log | grep -i 'invalid user' | grep -v ']$' | awk '{print $8 " -->" $10}' | grep ubuntu