Community discussions

MikroTik App
 
matugm
just joined
Topic Author
Posts: 2
Joined: Mon Sep 29, 2014 12:59 am

[Feature request] - fail2ban

Mon Sep 29, 2014 1:17 am

Hello,
it would be great if you could implement a fail2ban like feature for RouterOS for the services offered by the router (ssh, winbox, vpn...), this is assuming you need to let the ports open to the world because the clients aren't on a fixed network. I know there are some scripts out there but they don't cut it for me.
 
WirelessDSL
newbie
Posts: 38
Joined: Thu Nov 24, 2011 12:43 pm
Location: Germany
Contact:

Re: [Feature request] - fail2ban

Tue Sep 30, 2014 4:37 pm

+1 for that
 
jarda
Forum Guru
Forum Guru
Posts: 7756
Joined: Mon Oct 22, 2012 4:46 pm

Re: [Feature request] - fail2ban

Tue Sep 30, 2014 6:07 pm

No need of scripts. Just few firewall rules need to be added.
 
Sob
Forum Guru
Forum Guru
Posts: 9121
Joined: Mon Apr 20, 2009 9:11 pm

Re: [Feature request] - fail2ban

Fri Oct 03, 2014 6:36 am

Firewall rules are not entirely bad, something can be done with them, but they are still at ugly hack level, because they don't actually watch for failed logins. Well, except L7 for FTP's "530 Login incorrect", but that's far from elegant solution too. For other services it's just connection rate limiting. Better than nothing of course...

But if every service had an option like "If there are <number> of failed logins in <number> seconds, then add source address to list <name> with timeout <time>", that would be something. Or "On Login Failed" event for more DIY solution would be fine too.
 
jarda
Forum Guru
Forum Guru
Posts: 7756
Joined: Mon Oct 22, 2012 4:46 pm

Re: [Feature request] - fail2ban

Fri Oct 03, 2014 8:03 am

Right. I agree with you. It would be nice.

Who is online

Users browsing this forum: AndreKR, CHUPAPEE, Google [Bot], li77616211 and 213 guests