* Andre Truter <andre.truter@gmail.com> [12-22-05 02:35]:
I have a problem on one of my servers. A specific host has been attacking my server via ssh for the past 5 hours.
Now it is starting to cost me in bandwidth usage.
How can I set up SuSEFirewall2 to just drop all packets from that specific host?
I had similar problems and in this forum, Ulf Rasch X-Message-Number-for-archive: 251791 on 10-29-2005 advised: edit: /etc/sysconfig/scripts/SuSEfirewall2-custom to section: f2_custom_after_antispoofing() add: iptables -I INPUT 1 -s <ip.number.x.x>/16 -j DROP and it works perfectly for me. -- Patrick Shanahan Registered Linux User #207535 http://wahoo.no-ip.org @ http://counter.li.org HOG # US1244711 Photo Album: http://wahoo.no-ip.org/gallery2