i get sevaral people a day trying to log into our mikrtiks via ftp and they dont stop for hours at a time. What can be done?
ay/04/2007 09:44:07 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:10 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:13 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:16 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:19 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:22 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:25 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
may/04/2007 09:44:27 system,error,critical login failure for user Administrator
from 66.230.195.16 via ftp
Terminal vt102 detected, using multiline input mode
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
[admin@MikroTik] >
echo: system,error,critical login failure for user Administrator from 66.230.195
.16 via ftp
hello thanks guys , but the problem that i have is that i am using dual wan and when i put that rule into with my other filter rules it makes my gateways thinjk that they are down and disables them
here is how i have the gateways configured. This load balances and is failover at the same time.
In order for a rule to take affect, it must be the first match in the rules list. If you have a rule to accept all TCP traffic listed above the FTP rule to drop traffic, then the drop will have no affect.
Order your rules to exclude specific items first and accept general items at the bottom.
normally we will control our noc [e.g: update version by ftp], from any ips and anywhre... and until now is fine..
and next time maybe around the world, and how....