Craig White wrote:
We will work also with the Red Hat Security team and see if we can isolate any issues that might be FIXABLE.
doesn't this almost beg for upstream to make denyhosts a base install and automatically on, just as sshd is automatically on?
I've always wondered why a program like sshd didn't rate-limit connection attempts from day one. It's not exactly a new concept, especially for a security-oriented program.