blocking failed authentication doesn't work correctly

Think you've found a bug? Post a description here.

Moderator: Serin

Post Reply
GrantConsultingGroup
User
Posts: 26
Joined: Thu Dec 01, 2016 7:58 pm

blocking failed authentication doesn't work correctly

Post by GrantConsultingGroup » Thu Jan 26, 2017 2:03 am

We have Cerberus configured to auto block IP address on a set number of failed login attempts. In the Cerberus 8.0.9.0 console under IP manager we have enabled auto-blocking and enabled DoS Protection. Under "Pre-Blocked Settings", We have configured "block failed login Attempts before Auto-Block" to a value of 100 (not the real setting ). When we look below under the "IP Addresses "being watched" section" we see several (10+) IP addresses that have the same number of failed login attempts as the value specified under "pre-block". The IP address is not added to the block list under the general section and continues to be listed in the IP Addresses being watched.

End result is the that the IP address is connecting to the system more times and is not being blocked. Please advise

pacman
Senior User
Posts: 187
Joined: Thu Apr 28, 2016 1:54 pm

Re: blocking failed authentication doesn't work correctly

Post by pacman » Thu Jan 26, 2017 1:52 pm

Was unable to reproduce what you are seeing.

Could you submit a support request?

https://support.cerberusftp.com/hc/en-us/requests/new

Post Reply