2 Replies Latest reply: Jan 22, 2013 1:02 PM by g_wolfman
mtlgeek Level 1 Level 1 (0 points)

I'm trying to find a way to add a delay between new ssh connection to the mac using ipfw. Basically I want to duplicate the following linux iptables command:

 

iptables -A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -m recent --update --seconds 25 -j DROP

iptables -A INPUT -m state --state NEW -m tcp -p tcp --dport 22 -m recent --set -j ACCEPT

 

The effect is that the ip address that connect via ssh on the compute cannot open a new ssh connection for the next 25 seconds. it helps stop usename/password search via ssh without the complexity of creating an evolving black list.