Search code examples
securitysshwebserver

Protecting web-server from ssh brute force attacks


I have a server acting as a reverse-proxy connected directly to the internet. I access this computer through ssh on a non-standard port. It doesn't seem too secure. If someone found the ssh port they could brute-force it and gain access to the computer.

Is there a more secure way to configure this?


Solution

  • I would recommend a tool like denyhosts or sshguard, which watch your logs for failed logins, and auto ban IPs based on the rules you set.