On multiple servers, across three sites but all
with external ips with the same isp I keep seeing logs like the
following.
Oct 26 19:29:48 morticia sshd[7913]: Illegal user john from ::ffff:203.131.103.46 Oct 26 19:29:48 morticia sshd[7913]: reverse mapping checking getaddrinfo for adsl-131.103.46.info.com.ph failed - POSSIBLE BREAKIN ATTEMPT Should I be worried about this? it seems someone or
something is looping usernames to break in.
Rob Keeling
--
I love deadlines. I love the whooshing
noise they make as they go by.
- Douglas Adams |