3 ;;; Drop SSH connection from IP addresses in ssh_blacklist address list
chain=input action=drop protocol=tcp src-address-list=ssh_blacklist dst-port=10022
4 ;;; Blocked IP address that attempted multiple SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_3 address-list=ssh_blacklist address-list-timeout=1d dst-port=10022 log=no
5 ;;; IP address that attempted to create 3 SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_2 address-list=ssh_attempt_3 address-list-timeout=30s dst-port=10022 log=no
6 ;;; IP address that attempted to create 2 SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_1 address-list=ssh_attempt_2 address-list-timeout=30s dst-port=10022 log=no
7 ;;; IP address that attempted to create an SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp address-list=ssh_attempt_1 address-list-timeout=30s dst-port=10022 log=no
Çϱâ¿Í °°ÀÌ filter¸¦ Àû¿ëÇÏ¿´½À´Ï´Ù.
30ÃÊ µ¿¾È¿¡ µ¿ÀÏ IP·Î 4ȸ ÀÌ»ó Á¢¼Ó(¼º°ø ¶Ç´Â ½ÇÆÐ)½Ã, 1ÀÏ°£ ÇØ´ç IP·Î Ãß°¡ Á¢¼Ó(¼º°ø ¹× ½ÇÆÐ)°¡ Â÷´ÜµÇ´Â ³»¿ª ÀÔ´Ï´Ù.
Çϱâ URL ÂüÁ¶ ÇÏ¿´½À´Ï´Ù.
https://matthewsiemens.com/blocking-ssh-brute-force-attacks-in-mikrotik-routeros/
3 ;;; Drop SSH connection from IP addresses in ssh_blacklist address list
chain=input action=drop protocol=tcp src-address-list=ssh_blacklist dst-port=10022
4 ;;; Blocked IP address that attempted multiple SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_3 address-list=ssh_blacklist address-list-timeout=1d dst-port=10022 log=no
5 ;;; IP address that attempted to create 3 SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_2 address-list=ssh_attempt_3 address-list-timeout=30s dst-port=10022 log=no
6 ;;; IP address that attempted to create 2 SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp src-address-list=ssh_attempt_1 address-list=ssh_attempt_2 address-list-timeout=30s dst-port=10022 log=no
7 ;;; IP address that attempted to create an SSH connections
chain=input action=add-src-to-address-list connection-state=new protocol=tcp address-list=ssh_attempt_1 address-list-timeout=30s dst-port=10022 log=no