There was a recent discussion about blocking or atleast reduceing ssh brute force attempts. There is a "recent" module for netfiler/iptables that will help. http://blog.andrew.net.au/2005/02/16#ipt_recent_and_ssh_attacks http://snowman.net/projects/ipt_recent/ *also posted to oclug@oclug. -- sg