From 5731cc63e5eea3a8ad21899c5ac0e3dbe474af63 Mon Sep 17 00:00:00 2001 From: Valentin Samir Date: Mon, 7 Jan 2013 21:17:53 +0100 Subject: [PATCH] =?UTF-8?q?[firewall=5Fnew]=20On=20remonte=20aussi=20la=20?= =?UTF-8?q?limite=20ssh=20pour=20les=20machines=20des=20adh=C3=A9rents?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit Ignore-this: 1eddb79e5226399b7f0511bc6bd9ee7d darcs-hash:20130107201753-3a55a-276d660bf9ece2a4f604307bea35af66ce319fd7.gz --- gestion/gen_confs/firewall_new.py | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/gestion/gen_confs/firewall_new.py b/gestion/gen_confs/firewall_new.py index fc1b1031..ed6e9c62 100755 --- a/gestion/gen_confs/firewall_new.py +++ b/gestion/gen_confs/firewall_new.py @@ -1005,7 +1005,7 @@ class firewall_komaz(firewall_crans) : # Attention les règles sont à l'envers. Hint '-I' iptables("-I EXT_VERS_CRANS -p tcp --dport ssh -m state --state NEW -j ACCEPT") iptables("-I EXT_VERS_CRANS -p tcp --dport ssh -m state --state NEW\ - -m recent --name SSH --update --seconds 60 --hitcount 4 --rttl -j DROP") + -m recent --name SSH --update --seconds 30 --hitcount 10 --rttl -j DROP") iptables("-I EXT_VERS_CRANS -p tcp --dport ssh -m state --state NEW\ -m recent --name SSH --set")