Built to react fast in server farms environments (ISPs, HSPs, organisations...) Hookem-Banem is a log monitoring system which monitors logs being sent to a central server (syslog, file...) and on detection of malicious intent (repeated login failures, many failed RCPT commands, bad HTTP requests... any other repeating condition you want to monitor for) it broadcasts a ban command to all servers in the cluster so the clients running on each machine can drop/reject any future connections from the attacker for a limited time (and on continued repeats even longer periods)
You can just monitor sshd logs for individual matching lines or using the built in pattern matching (generated line X then generated line Y), Hookem-Banem can be configured to only block specific attack attempts.
Looking for a program that is like Hookem-Banem? We have our top picks here. If you need another program that has some of the features of Hookem-Banem on your device, read what we recommend in this post.
SSHGuard monitors services through their logging activity. It reacts to messages about dangerous activity by blocking the source address with the local firewall....
Features:
Add your reviews & share your experience when using Hookem-Banem to the world. Your opinion will be useful to others who are looking for the best Hookem-Banem alternatives.
Popular Alternatives
iOS Alternatives
Android Alternatives
Copyright © 2021 TopAlter.com
Sites we Love: AnswerBun, MenuIva, UKBizDB, Sharing RPP