The one-liner:

dd if=/dev/zero bs=1G count=10 | gzip -c > 10GB.gz

This is brilliant.

  • frezik@midwest.social
    link
    fedilink
    English
    arrow-up
    32
    ·
    1 day ago

    When it comes to attacks on the Internet, doing simple things to get rid of the stupid bots means kicking 90% of attacks out. No, it won’t work against a determined foe, but it does something useful.

    Same goes for setting SSH to a random port. Logs are so much cleaner after doing that.

    • airgapped@piefed.social
      link
      fedilink
      English
      arrow-up
      11
      ·
      14 hours ago

      Setting a random SSH port and limiting it to 3/min saw failed login attempts fall by 99% and jailed IPs fall to 0.

      • WFloyd@lemmy.world
        link
        fedilink
        English
        arrow-up
        2
        ·
        2 hours ago

        I’ve found great success using a hardened ssh config with a limited set of supported Cyphers/MACs/KexAlgorithms. Nothing ever gets far enough to even trigger fail2ban. Then of course it’s key only login from there.