What would you use "login block-for"?
login block-for - used to mitigate dictionary attacks and DOS (denial of service) attacks (When used with "login quiet-mode")
Once you enable "login block-for" the following defaults are set:
-login delay of 1 second
-login attempts from Telnet/SSH is defined during the quiet period.
Example: this will block any further attempt for 30 seconds when the 3 unsuccessful attempts are made within 10 seconds
config#login block-for 30 attempts 3 within 10
Note: When using "login block-for" you can restrict any new connection for the set period of time using the "login quiet-mode".
Exploring the Splunk Web Interface | Major Features and Preferences Welcome
to this in-depth guide to the Splunk Web interface! In this video, we
explore...
2 months ago
0 comments:
Post a Comment