Ciao a tutti...
logcheck mi invia questi log:
Si tratta evidentemente di una serie di tentativi di login via SSH.codice:Dec 19 08:03:27 vps sshd[16196]: Invalid user test from 202.96.1.11 Dec 19 08:03:27 vps sshd[16196]: (pam_unix) check pass; user unknown Dec 19 08:03:27 vps sshd[16196]: (pam_unix) authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.96.1.11 Dec 19 08:03:28 vps sshd[16197]: Invalid user test from 202.96.1.11 Dec 19 08:03:28 vps sshd[16197]: (pam_unix) check pass; user unknown Dec 19 08:03:28 vps sshd[16197]: (pam_unix) authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.96.1.11 Dec 19 08:03:28 vps sshd[16196]: Failed password for invalid user test from 202.96.1.11 port 47713 ssh2 Dec 19 08:03:30 vps sshd[16197]: Failed password for invalid user test from 202.96.1.11 port 47716 ssh2 Dec 19 08:03:33 vps sshd[16200]: Invalid user guest from 202.96.1.11 Dec 19 08:03:33 vps sshd[16200]: (pam_unix) check pass; user unknown Dec 19 08:03:33 vps sshd[16200]: (pam_unix) authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.96.1.11 Dec 19 08:03:34 vps sshd[16202]: Invalid user guest from 202.96.1.11 Dec 19 08:03:34 vps sshd[16202]: (pam_unix) check pass; user unknown Dec 19 08:03:34 vps sshd[16202]: (pam_unix) authentication failure; logname= uid=0 euid=0 tty=ssh ruser= rhost=202.96.1.11 Dec 19 08:03:35 vps sshd[16200]: Failed password for invalid user guest from 202.96.1.11 port 47844 ssh2 Dec 19 08:03:36 vps sshd[16202]: Failed password for invalid user guest from 202.96.1.11 port 47821 ssh2
Io però vorrei sapere quali porte ci sono aperte, con nmap quali opzioni devo dare?

Rispondi quotando