• Peer Block/Security

    From Daryl Stout@VERT/TBOLT to MARK LEWIS on Wednesday, July 19, 2017 07:34:00
    Mark,

    having layered security is much better... besides, why let SBBS churn on all ML>the attacks when you can prevent them at your perimeter firewall and never e ML>let them traverse your network?

    I reactivated Peer Block this morning...as several were trying to
    crash the email server.

    It's a shame these miscreants don't have anything better to do.

    Daryl

    ---
    þ OLX 1.53 þ A clear conscience is usually the sign of a bad memory.
    þ Synchronet þ The Thunderbolt BBS - wx1der.dyndns.org
  • From Mro@VERT/BBSESINF to Daryl Stout on Wednesday, July 19, 2017 16:25:50
    Re: Peer Block/Security
    By: Daryl Stout to MARK LEWIS on Wed Jul 19 2017 07:34 am

    It's a shame these miscreants don't have anything better to do.

    Daryl




    it's good to use peerblock before using synchronet's internal blocking.
    ---
    þ Synchronet þ ::: BBSES.info - free BBS services :::
  • From mark lewis@VERT to Daryl Stout on Thursday, July 20, 2017 00:25:42
    On 2017 Jul 19 07:34:00, you wrote to me:

    having layered security is much better... besides, why let SBBS churn
    on all the attacks when you can prevent them at your perimeter
    firewall and never e let them traverse your network?

    I reactivated Peer Block this morning...as several were trying to
    crash the email server.

    crash the mail server?? as in running a common dictionary attack against certain accounts looking for insecure passwords??

    It's a shame these miscreants don't have anything better to do.

    no one is sitting there doing these things... they're all scripts or custom apps thrown together... the operators are known as skiddies (short for script kiddies)... most of them couldn't program their way out of a wet newspaper... they don't even look at any results of the attempts... they don't have to... they simply issue commands on their command and control (aka cnc) systems and let the bots do all the work while they go play games or whatever...

    )\/(ark

    Always Mount a Scratch Monkey
    Do you manage your own servers? If you are not running an IDS/IPS yer doin' it wrong...
    ... It is "USER" friendly. But my name doesn't happen to be User.
    ---
    * Origin: (1:3634/12.73)
    þ Synchronet þ Vertrauen þ Home of Synchronet þ telnet://vert.synchro.net
  • From Daryl Stout@VERT/TBOLT to MRO on Thursday, July 20, 2017 10:45:00
    it's good to use peerblock before using synchronet's internal blocking.

    Had to put it back in...plus, it's like a double firewall against BBS hackers.

    I have it set up on Windows 7 boot up to delete "the bad country list
    files" in the Peer Block directory. Then, I tell the system to "Run As Administrator", update the lists that way, and then I start Synchronet
    Control Panel, the DYN updater client (for wx1der.dyndns.org), then the
    BBS Finder program. I tried running a JS file for SBBS (to update the bbsfinder.net deal), but it never worked right.

    Daryl

    ---
    þ OLX 1.53 þ A little a'disk & a little a'data
    þ Synchronet þ The Thunderbolt BBS - wx1der.dyndns.org
  • From Daryl Stout@VERT/TBOLT to MARK LEWIS on Friday, July 21, 2017 16:24:00
    Mark,

    I reactivated Peer Block this morning...as several were trying to
    crash the email server.

    crash the mail server?? as in running a common dictionary attack against ML>certain accounts looking for insecure passwords??

    They might have been, but was flooding it, and kept shutting it down.

    no one is sitting there doing these things... they're all scripts or custom ML>apps thrown together... the operators are known as skiddies (short for scrip ML>kiddies)... most of them couldn't program their way out of a wet newspaper.. ML>they don't even look at any results of the attempts... they don't have to... ML>they simply issue commands on their command and control (aka cnc) systems an ML>let the bots do all the work while they go play games or whatever...

    The more protection I have from them, the better.

    At times, I've had to reset the Web Server, The FTP Server, and the
    Mail Server, as "SBBS can't find the ports", or "another application is
    using them".

    Daryl

    ---
    þ OLX 1.53 þ Aacckk!! II''mm hhaallff dduupplleexx!!
    þ Synchronet þ The Thunderbolt BBS - wx1der.dyndns.org