Add a wrapper script to run Medusa (which does ssh scans looking for bogus
accounts/passwords). Thanks to Mike Blodgett for cluing us in to this and providing the configuration he was using. This will run from cron a couple of times a day. The setup is not quite fully automated yet, need to create /usr/local/etc/medusa/{wordlist.txt,userlist.txt} by hand, as well as the crontab entry. We are scanning all local nodes (including VMs) as well as any allocated IP addresses in address pools.
security/runmedusa.in
0 → 100644
Please register or sign in to comment