I see every few days in the process list that somebody is trying to connect to my server every second. I have a good password and such a brute force attack is nearly impossible but I want some more security. For example an option that blocks an ip address for a specific time after a few amount of fails. Another example is that we can allow ssh connections only every few seconds from a client. All these values should be configurable.
Good external solutions exist. The best is to enforce password strength.
One more great solution against Brute Force attack is LoginWall. you could download free anti brute force solution from their website www.loginwall.com
close resolved bugs now that openssh-5.9 has been released