Community Forums
Connect with us on LinkedIn
Community Notice
+ Reply to Thread
Results 1 to 7 of 7
  1. #1
    Member
    Join Date
    Jun 2007
    Posts
    43

    Default Brute force

    Hi, I have brute force turned on, but I have logs telling me that people are brute forcing me every 3 seconds, its sooo annoying.

    Brute force permanently bans them after certain amount of attempts, but then, they just change their IP or another IP keeps hitting my root account. My password is 32characters long with symbols and numbers and the hardest characters ever, so im not afraid of them getting in, but I am sure its slowing down my server some how, no?

    Also, I have added my IP and hostname to the bruteforce whitelist, but for some reason, i keep getting this when im in WHM
    Brute Force Protection
    This account is currently locked out because a brute force attempt was detected. Please wait 10 minutes and try again. Attempting to login again will only increase this delay. If you frequently experience this problem, we recommend having your username changed to something less generic.
    what can I do, is there something I can do to make it all stop? What are some of your brute force settings?

    thank you

  2. #2
    Member
    Join Date
    Mar 2007
    Posts
    113

    Default

    Maximum Failures By Account: 10
    Maximum Failures Per IP: 9

    this way you can never get locked out of your root account

  3. #3
    cPanel Partner NOC cPanel Partner NOC Badge
    Join Date
    Jul 2005
    Location
    New Jersey, USA
    Posts
    397

    Default

    Just increase the limits higher to prevent this and try not to enter the wrong login too many times, that should solve this.

  4. #4
    cPanel Development cpanelkenneth's Avatar
    Join Date
    Apr 2006
    Posts
    3,768
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Quote Originally Posted by iLLuSi0nS View Post
    Hi, I have brute force turned on, but I have logs telling me that people are brute forcing me every 3 seconds, its sooo annoying.

    Brute force permanently bans them after certain amount of attempts, but then, they just change their IP or another IP keeps hitting my root account. My password is 32characters long with symbols and numbers and the hardest characters ever, so im not afraid of them getting in, but I am sure its slowing down my server some how, no?

    Also, I have added my IP and hostname to the bruteforce whitelist, but for some reason, i keep getting this when im in WHM

    what can I do, is there something I can do to make it all stop? What are some of your brute force settings?

    thank you
    Do you see this when attempting to login to WHM as root, or into WHM/cPanel as a regular user? What is your full cPanel version number?
    Kenneth
    Product Development
    cPanel, Inc.

  5. #5
    Member
    Join Date
    Jun 2007
    Posts
    43

    Default

    Quote Originally Posted by cpanelkenneth View Post
    Do you see this when attempting to login to WHM as root, or into WHM/cPanel as a regular user? What is your full cPanel version number?
    Both, root and cpanel user, it temp bans me for like 10 minutes. But I am on the whitelist, I dont see why it would do this

  6. #6
    Member
    Join Date
    Jun 2007
    Posts
    43

    Default

    nevermind, I thought I was on the whitelist, just checked my IP and it has changed since putting it on the whitelist...It hasnt changed in 2 years, thanks, I set it to 10 logins per account and 9 per IP

  7. #7
    cPanel Development cpanelkenneth's Avatar
    Join Date
    Apr 2006
    Posts
    3,768
    cPanel/Enkompass Access Level

    Root Administrator

    Default

    Quote Originally Posted by iLLuSi0nS View Post
    nevermind, I thought I was on the whitelist, just checked my IP and it has changed since putting it on the whitelist...It hasnt changed in 2 years, thanks, I set it to 10 logins per account and 9 per IP
    Glad you were able to resolve this.
    Kenneth
    Product Development
    cPanel, Inc.

Similar Threads & Tags
Similar threads

  1. Brute Force Protection
    By Mars_Taxi in forum Security
    Replies: 1
    Last Post: 01-08-2010, 11:44 PM
  2. Brute Force
    By jeck in forum Security
    Replies: 4
    Last Post: 11-16-2009, 07:38 PM
  3. Brute Force
    By jeck in forum cPanel and WHM Discussions
    Replies: 4
    Last Post: 11-16-2009, 07:38 PM
  4. Brute Force SUCKS!
    By BianchiDude in forum cPanel and WHM Discussions
    Replies: 2
    Last Post: 06-25-2009, 12:11 PM
  5. Brute Force Q
    By rfonseca in forum cPanel and WHM Discussions
    Replies: 3
    Last Post: 02-01-2005, 05:20 PM
Linkedin       Facebook       Twitter       RSS       Flickr       YouTube