Skip to content

Request: Variable to override "even_deny_root" default setting #923

@raratiru

Description

@raratiru

I just hardened my Debian 13 server and got locked out due to failed ssh attempts from bots.

  • I use fail2ban to ban those IPs.
  • I have disabled all ssh password logins.

Nonetheless, the root account got locked due to those many different IPs that try to login even once, before they are banned.

If this should be the default, I would expect a variable that allows a user to override this setting.

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions