OPNsense Forum

English Forums => General Discussion => Topic started by: meazz1 on April 10, 2020, 06:56:53 PM

Title: SSH unresponsive after multiple unsuccessful login efforts
Post by: meazz1 on April 10, 2020, 06:56:53 PM
Is this a feature for SSH to become unresponsive after failed log in attempts.
I have an admin user account setup also. I was trying to log in using the admin account and it gave  me a message that "This account is currently not available.
Connection to 192.168.4.1 closed".
So, when I tried with the "root" user the terminal would not even response.
Is there a timeout or cooling off setup in Opnsense?
Title: Re: SSH unresponsive after multiple unsuccessful login efforts
Post by: stefanpf on April 10, 2020, 07:09:47 PM
Have a Look at
Firewall -> Diagnostics -> pf tables
There should be a table 'sshlockout'
Title: Re: SSH unresponsive after multiple unsuccessful login efforts
Post by: meazz1 on April 10, 2020, 09:16:29 PM
Quote from: stefanpf on April 10, 2020, 07:09:47 PM
Have a Look at
Firewall -> Diagnostics -> pf tables
There should be a table 'sshlockout'

In the pf tables I don't see any counter but I see whole bunch of unknown IPs.
Here's a screenshot.

(https://lh3.googleusercontent.com/xPqZ5sNR95VncGSKA4Ok7_q4mhjU4NRRdjcVqyOwlzQa8pI6SKCgoqFqz62kaysnWOHPLpkeohotIt4tO-v-yk_7upOYSuwhlFdlT6-ljLXfN4HafUrjnAYjs_QipnIwSXwhHtHR=w2400)
Title: Re: SSH unresponsive after multiple unsuccessful login efforts
Post by: stefanpf on April 10, 2020, 09:46:28 PM
Use the Combobox (which actually Shows 'bogons') and select 'sshlockout'.
Title: Re: SSH unresponsive after multiple unsuccessful login efforts
Post by: meazz1 on April 11, 2020, 12:16:11 AM
Quote from: stefanpf on April 10, 2020, 09:46:28 PM
Use the Combobox (which actually Shows 'bogons') and select 'sshlockout'.

The pf tables is empty, but there's an option flush.
Title: Re: SSH unresponsive after multiple unsuccessful login efforts
Post by: meazz1 on April 11, 2020, 12:21:23 AM
I got it working. I tried now and able to ssh using same password.
Thanks