<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Blocking brute force SSH to firewall in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78069#M42807</link>
    <description>&lt;P&gt;For various business reasons I need to allow SSH directly to a PA-3020 to manage the unit. &amp;nbsp;Is there a way to apply a vulenerability policy to this traffic so that I can block bruteforce attacks?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Dustin&lt;/P&gt;</description>
    <pubDate>Fri, 13 May 2016 17:15:06 GMT</pubDate>
    <dc:creator>dscott98</dc:creator>
    <dc:date>2016-05-13T17:15:06Z</dc:date>
    <item>
      <title>Blocking brute force SSH to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78069#M42807</link>
      <description>&lt;P&gt;For various business reasons I need to allow SSH directly to a PA-3020 to manage the unit. &amp;nbsp;Is there a way to apply a vulenerability policy to this traffic so that I can block bruteforce attacks?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Dustin&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2016 17:15:06 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78069#M42807</guid>
      <dc:creator>dscott98</dc:creator>
      <dc:date>2016-05-13T17:15:06Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking brute force SSH to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78072#M42813</link>
      <description>&lt;P&gt;Is it possible to setup a vpn tunnel for yourself, then ssh to an inside management ip? I would be careful opening any external port up for management, especially if you use local authentication credentials.&lt;/P&gt;</description>
      <pubDate>Fri, 13 May 2016 18:18:03 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78072#M42813</guid>
      <dc:creator>PatrickWalton</dc:creator>
      <dc:date>2016-05-13T18:18:03Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking brute force SSH to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78097#M42821</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="comment.PNG" style="width: 600px;"&gt;&lt;img src="https://live.paloaltonetworks.com/t5/image/serverpage/image-id/4031i0EB5AB3DB384C24C/image-size/large/is-moderation-mode/true?v=v2&amp;amp;px=999" role="button" title="comment.PNG" alt="comment.PNG" /&gt;&lt;/span&gt;﻿&lt;/P&gt;</description>
      <pubDate>Sun, 15 May 2016 05:25:30 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78097#M42821</guid>
      <dc:creator>tsrivastav</dc:creator>
      <dc:date>2016-05-15T05:25:30Z</dc:date>
    </item>
    <item>
      <title>Re: Blocking brute force SSH to firewall</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78098#M42822</link>
      <description>&lt;P&gt;Hope the above attachment will answer your question.&lt;/P&gt;
&lt;P&gt;--------------------------------------------------------------------------&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;# You can call this vulnaribility profile in the intrested security policy ( if the traffic is from unt to unt or a intrazone traffic )&lt;BR /&gt;# Please create a seperate security policy as default intrazone profile will not contain this Vul. Profile.&lt;BR /&gt;#Clone a default one to make the changes as in default one you will not be able to make any changes.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;# Default action is &lt;FONT color="#FF6600"&gt;alert,&amp;nbsp;&lt;FONT color="#000000"&gt;Change the action and number of attempts as per your needs.&lt;/FONT&gt;&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;FONT color="#000000"&gt;Thank you&lt;/FONT&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 15 May 2016 05:32:23 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/blocking-brute-force-ssh-to-firewall/m-p/78098#M42822</guid>
      <dc:creator>tsrivastav</dc:creator>
      <dc:date>2016-05-15T05:32:23Z</dc:date>
    </item>
  </channel>
</rss>

