https://redmine.pfsense.org/https://redmine.pfsense.org/favicon.ico?16780521162019-01-25T13:54:13ZpfSense bugtrackerpfSense - Feature #9288: SSHGuard add pfSense signature in standardhttps://redmine.pfsense.org/issues/9288?journal_id=398702019-01-25T13:54:13ZJoshua Sign
<ul></ul><p>FYI</p>
<p>Kevin Zheng from sshguard bitbucker wrote :</p>
<blockquote>
<p>I’d be happy to include this signature in SSHGuard if the rule for PFSENSE_AUTH_FAIL was more specific in the beginning. Right now you have:</p>
<p>.+"webConfigurator authentication error for user '"{WORD}"' from: "</p>
<p>Due to the ‘.+’ in the beginning the lexer has to do extra work to possibly match this with every other beginning of the line. For me, this doubles the number of LALR table entries, which increases the lexer file size and the compile time. (This in of itself isn’t a significant increase, but in the past where several rules used .* or .+ at the beginning, SSHGuard compile times ballooned noticeably.)</p>
<p>Perhaps it’s worth dealing with more of this rule in the parser as well. I can help take a closer look at this later, too.</p>
</blockquote> pfSense - Feature #9288: SSHGuard add pfSense signature in standardhttps://redmine.pfsense.org/issues/9288?journal_id=415022019-08-14T13:19:50ZJim Pingle
<ul><li><strong>Category</strong> set to <i>Authentication</i></li></ul>