Groups | Blog | Home
all groups > iis ftp > november 2006 >

iis ftp : Ftp hackning


Bjørn Christensen
11/13/2006 12:00:00 AM
I can see from the logfiles that there are evil peoble trying to get access
to out ftp server (W2003), and I am suprised that they are able to try a new
password so fast, I would have expected that the windows security system
would increase the delay every time a wrong password were given.

I this a feature that need to be configured somewhere???

:-)
11/14/2006 9:01:04 AM

[quoted text, click to view]
Bernard Cheah [MVP]
11/15/2006 12:00:00 AM
Nope. this is quite common. typically - you can block this bad ip address
from accessing the site.

--
Regards,
Bernard Cheah
http://www.iis.net/
http://www.iis-resources.com/
http://msmvps.com/blogs/bernard/


[quoted text, click to view]

vlape
11/21/2006 9:57:01 AM
There is no builtin protection to tarpit a brute force? how about auto block
IP after X failed attempts? my FTP is getting hammered every night. To
manually go in and block each IP is a pain. anyone know if ISA can monitor
and block failed attempts?

[quoted text, click to view]
Bernard Cheah [MVP]
11/22/2006 12:00:00 AM
Google this group. there's few auto block script posted.
it check the ftp log, check x login times within a period, then block the
ip.
--
Regards,
Bernard Cheah
http://www.iis.net/
http://www.iis-resources.com/
http://msmvps.com/blogs/bernard/


[quoted text, click to view]

AddThis Social Bookmark Button