Jump to content

Suggestions for log attempts alerts


Recommended Posts

Hello!

Recently I had an infection on one of my machines which tried to brute-force into my Unraid box. I only got wind of it through Fix Common Problems, which though alerted me a full day later during its normal routine.

 

Is there a simple way to get notifications about login attempts? I don't need a full syslog service, just this one functionality... I was tempted to go with Graylog but it's much more complicated than my needs, plus I'd need Elasticsearch and Mongodb to be installed too, so I thought I'd ask here :)

 

Thanks!

 

PS No, my box is not accessible from outside my network, before you ask; this was a local event.

PS2 I do have alerts enabled for all levels and they work, but it seems the system doesn't give any importance to successful/failed logging in attempts, even for an obvious brute force attack!

Link to comment

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.
Note: Your post will require moderator approval before it will be visible.

Guest
Reply to this topic...

×   Pasted as rich text.   Restore formatting

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...