Forum
  • Search
  • Member List
  • Calendar
Hello There, Guest! Login Register — Login with Facebook

SSH failed login attemps are rate limited by default on Xbian?
Thank you for your donation

Thread Closed 
 
Thread Rating:
  • 0 Votes - 0 Average
  • 1
  • 2
  • 3
  • 4
  • 5
Threaded Mode | Linear Mode
SSH failed login attemps are rate limited by default on Xbian?
15th Nov, 2023, 09:51 PM
Post: #1
postcd Offline
Registered
Posts: 31
Joined: Nov 2021
Reputation: 0
SSH failed login attemps are rate limited by default on Xbian?
When i install Xbian, and enable SSH (to accept logins from other LAN computers), is the Xbian protected from unrestricted SSH brute-force or what are SSH failed login restrictions in place?

Is suggested to install fail2ban or something else?
https://web.emhmki.org/guides/ssh/guide_ssh_rate_limiting.html
https://lowendguide.com/3/security/rate-limiting-ssh-with-iptables/

When trying to install fail2ban, i have got:
Code:
Starting Authentication failure monitor: fail2ban2023-11-15 12:47:11,251 fail2ban                [8360]: ERROR   Failed during configuration: Have not found any log file for sshd jail
failed!
invoke-rc.d: initscript fail2ban, action "start" failed.
dpkg: error processing package fail2ban (--configure):
installed fail2ban package post-installation script subprocess returned error exit status 1
Processing triggers for man-db (2.9.4-2) ...
Errors were encountered while processing:
fail2ban
E: Sub-process /usr/bin/dpkg returned an error code (1)
full log

Thank you
Visit this user's website Find all posts by this user
2nd Dec, 2023, 04:43 AM (This post was last modified: 2nd Dec, 2023 04:44 AM by Nachteule.)
Post: #2
Nachteule Offline
Administrator
******
Posts: 2,405
Joined: Dec 2014
Reputation: 122
RE: SSH failed login attemps are rate limited by default on Xbian?
Sorry for the late response Sad

(15th Nov, 2023 09:51 PM)postcd Wrote:  When i install Xbian, and enable SSH (to accept logins from other LAN computers), is the Xbian protected from unrestricted SSH brute-force or what are SSH failed login restrictions in place?

Is suggested to install fail2ban or something else?
https://web.emhmki.org/guides/ssh/guide_ssh_rate_limiting.html
https://lowendguide.com/3/security/rate-limiting-ssh-with-iptables/

When trying to install fail2ban, i have got:
Code:
Starting Authentication failure monitor: fail2ban2023-11-15 12:47:11,251 fail2ban                [8360]: ERROR   Failed during configuration: Have not found any log file for sshd jail
failed!
invoke-rc.d: initscript fail2ban, action "start" failed.
dpkg: error processing package fail2ban (--configure):
installed fail2ban package post-installation script subprocess returned error exit status 1
Processing triggers for man-db (2.9.4-2) ...
Errors were encountered while processing:
fail2ban
E: Sub-process /usr/bin/dpkg returned an error code (1)
full log

Thank you

No, they are not. you can also make life unnecessarily difficult for yourself
Only allow ssh by key instead of password is completely sufficient

No idea why the fail2ban doesn't start, maybe it's because the sshd is started by inetd by default

As long as the Raspberry Pi on which XBian is running is not directly accessible from the internet, it is completely nonsense to install something like fail2ban
Find all posts by this user
28th May, 2024, 01:55 PM
Post: #3
katebishop Offline
Banned
Posts: 1
Joined: May 2024
RE: SSH failed login attemps are rate limited by default on Xbian?
Xbian does not have fail2ban pre-installed or configured by default for SSH rate limiting. To enhance SSH security and mitigate brute-force attacks, you can manually install and configure fail2ban by adjusting the SSH log file path in the fail2ban configuration file. Wordle Unlimited
Find all posts by this user
« Next Oldest | Next Newest »
Thread Closed 


  • View a Printable Version
  • Send this Thread to a Friend
  • Subscribe to this thread
Forum Jump:

Current time: 26th May, 2025, 02:58 AM Powered By MyBB, © 2002-2025 MyBB Group.