Skip to content

ReferenceThe 22 checks

Login attack protection

Security checklogin-protection

What it reads

Whether fail2ban, sshguard or CrowdSec is running, and whether SSH allows password login.

Does it need root?

It reads everything it needs as a normal user.

When it passes

The report lists it as passed, in these words:

  • protection

What it can find

Warning

Nothing blocks repeated SSH password guesses

SSH allows password login and nothing locks out an address that keeps guessing. Turning off password login also solves this.

Fix
sudo apt-get install -y fail2ban && sudo systemctl enable --now fail2ban