By Zeroprox
So for the past few days i’v been keeping track of my fail2ban logs and noticed that a ton of Chinese ip addresses are being banned. It seems from my auth.log they are trying to brute force there way into my root account. I was wondering if anyone else is experiencing this and if its something I should report directly to DigitalOcean?
This textbox defaults to using Markdown to format your answer.
You can type !ref in this text area to quickly search our full set of tutorials, documentation & marketplace offerings and insert the link!
I use this to help track and help block these assbaskets: https://www.abuseipdb.com/
Thanks for the tips. I will for sure be switching to cloudflare I didn’t realize they had a free plan and I will also switch the default port of my ssh. Is it good practice to also switch the default port of my web server?
Get paid to write technical tutorials and select a tech-focused charity to receive a matching donation.
Full documentation for every DigitalOcean product.
The Wave has everything you need to know about building a business, from raising funding to marketing your product.
Stay up to date by signing up for DigitalOcean’s Infrastructure as a Newsletter.
New accounts only. By submitting your email you agree to our Privacy Policy
Scale up as you grow — whether you're running one virtual machine or ten thousand.
Sign up and get $200 in credit for your first 60 days with DigitalOcean.*
*This promotional offer applies to new accounts only.